|
|
|
||||
|
Welcome to the GoFuckYourself.com - Adult Webmaster Forum forums. You are currently viewing our boards as a guest which gives you limited access to view most discussions and access our other features. By joining our free community you will have access to post topics, communicate privately with other members (PM), respond to polls, upload content and access many other special features. Registration is fast, simple and absolutely free so please, join our community today! If you have any problems with the registration process or your account login, please contact us. |
![]() |
|
|||||||
| Discuss what's fucking going on, and which programs are best and worst. One-time "program" announcements from "established" webmasters are allowed. |
|
|
Thread Tools |
|
|
#1 |
|
Too lazy to set a custom title
Join Date: Aug 2001
Location: The Netherlands
Posts: 13,723
|
Hack protection-->pennywize addon would be nice, is this already in the market?
Hi,
Question, I'm thinking of using pennywize for protections against password trades, and brute force attacks. BUT, now I understood, you have to create a new password for the members who did get out of the DB, and email him/her. Is there a way when a passwrd het blocked, an email is send automatically to the "real"member, and in this email, the reason, and the new passwrd is included? Andre
__________________
Questions? ICQ: 125184542 |
|
|
|
|
|
#2 |
|
Confirmed User
Join Date: Jun 2002
Location: My Coffin
Posts: 1,227
|
That's not really a good idea if you use pennywize or even our product Stop That Hacker http://www.stopthathacker.com
For the following reason. Once you stop brute force attacks 99.99% of all your password sharing is from the member giving out his password or from credit card fraud. So why email him a new password so he can give it out again? Make him explain why he gave it out in the first place. Plus most password sharring ends up in a chargeback anyway. So kill the account. Kill the rebilling and forget it. Hugs, Danielle |
|
|
|
|
|
#3 |
|
Confirmed User
Join Date: Feb 2002
Location: Seattle
Posts: 1,070
|
i'd suggest letting them reset their password up to twice, and then after that, have them explain it. send them an e-mail with a link they have to click to reset the password and everything. maybe even generate the password for them at that point.
__________________
|
|
|
|
|
|
#4 | |
|
Confirmed User
Join Date: Nov 2002
Posts: 7,761
|
Quote:
|
|
|
|
|
|
|
#5 | |
|
Too lazy to set a custom title
Join Date: Aug 2001
Location: The Netherlands
Posts: 13,723
|
Quote:
BTW your program, why is that better then pennywize? You have sites using your script?(because the price is so low, and the design of your site is not so good, makes me suspicious. A demo would be great ANdre
__________________
Questions? ICQ: 125184542 |
|
|
|
|
|
|
#6 |
|
Confirmed User
Join Date: Dec 2002
Location: Dallas, TX
Posts: 422
|
|
|
|
|
|
|
#7 | |
|
Too lazy to set a custom title
Join Date: Aug 2001
Location: The Netherlands
Posts: 13,723
|
Quote:
500 dollar looks a bit pricey to me for that feature.... Andre
__________________
Questions? ICQ: 125184542 |
|
|
|
|
|
|
#8 |
|
Confirmed User
Join Date: Mar 2002
Location: Infidelville
Posts: 1,902
|
i tried pennywize about 4 years ago or so, stopped using them.
i didn't like the way they jerked my 401 traffic to their benefit - ads pages. their service works well, i just thought paying them *and* giving them hits to their 401 pages excessive....even if it is crap traffic. ;) they may have stopped taking everyone's 401 traffic by now, for the record i can't say as it's been years since i messed with them. |
|
|
|
|
|
#9 | |
|
Confirmed User
Industry Role:
Join Date: May 2001
Location: LLL©
Posts: 1,425
|
Quote:
|
|
|
|
|
|
|
#10 | |
|
So Fucking Banned
Industry Role:
Join Date: May 2001
Location: Your mom's front hole
Posts: 40,906
|
Quote:
Not even close...99% is from hackers hacking the password file and stealing the passwords. |
|
|
|
|
|
|
#11 |
|
Too lazy to set a custom title
Join Date: Aug 2001
Location: The Netherlands
Posts: 13,723
|
No programs capable of doing that?
Andre
__________________
Questions? ICQ: 125184542 |
|
|
|
|
|
#12 |
|
Macdaddy coder
Industry Role:
Join Date: Feb 2002
Location: MacDaddy pimp coder
Posts: 2,806
|
__________________
MacDaddy Coder. |
|
|
|
|
|
#13 |
|
Confirmed User
Join Date: Oct 2002
Location: New England, US
Posts: 256
|
Pennywize now lets you direct the failed logins to a different URL.
I use Pennywize, these days I simply wouldn't be without some sort of password trader/brute force protection. What I've been doing is killing the accounts of people who obviously have compromised passwords and sending them an E-mail asking them to get in touch so I can issue them a new ID/PW. I've found that the people how get in touch never seem to have another problem, leading me to believe their ID/PW was hacked by someone else, not traded by them. The ones who don't get in touch (who have also been consistently the ones with PW/IDs coming form the most subnets) tend to chargeback. The conclusion is that the worst offenders buy a site, then trade that PW/ID on a board, and when they get caught, they charge back. Again, another example of VISA and MC not giving a shit about people who are just criminals as long as they are cardholders. Brutal
__________________
"Don't worry, I won't bite...oh, wait a minute, I forgot, yes I will." ![]() www.brutalmaster.com |
|
|
|
|
|
#14 |
|
Confirmed User
Join Date: Jun 2002
Location: My Coffin
Posts: 1,227
|
justsexxx,
We have sold tons of copies at over $300.00 and never had a complaint. Yes the site design sucks. LOL The program has been around a long time. Stop That Hacker runs 100% on YOUR server! So you don't have to worry about the other guy being down. The price was reduced so no one with a paysite could ever say they can't afford a password hacking solution. Not sure about the others but ours stops HEAD brute force attacks at 0 tries! If a head request (The most popular type of brute force hacking) is received to a protected area it is sent to /dev/null and not even responded to. OneHungLo, If the hackers are getting your passwords what ever you are using to stop brute force attacks must really suck. Hugs, Danielle |
|
|
|
|
|
#15 |
|
Confirmed User
Join Date: Dec 2002
Posts: 194
|
Hi
We use pennywize on all our sites, it's teriffic, and i would hate to live without some kind of protection. Their new version 3 allows you to redirect all your abused traffic to a URL of your choice - which is pretty kewl. It's only 401 traffic, but still. Their version 3 one has way improved brute force protection too - Steve showed me how it worked once and it was a real eye opener. Anyway that's my $0.02! thanks, Robert
__________________
SIG TOO BIG! Maximum 120x60 button and no more than 3 text lines of DEFAULT SIZE and COLOR. Unless your sig is for a GFY top banner sponsor, then you may use a 624x80 instead of a 120x60. |
|
|
|
|
|
#16 | |
|
Too lazy to set a custom title
Join Date: Aug 2001
Location: The Netherlands
Posts: 13,723
|
Quote:
Andre
__________________
Questions? ICQ: 125184542 |
|
|
|
|
|
|
#17 |
|
Confirmed User
Join Date: Apr 2002
Location: Club Drunk
Posts: 2,734
|
proxie-pass.com
I think I post this once a week It saved us from a $1000 a day hacked pass problem
__________________
SIGS ARE GAY 98055668 icq |
|
|
|
|
|
#18 |
|
Confirmed User
Join Date: Jun 2002
Location: My Coffin
Posts: 1,227
|
justsexxx,
I can do one better. My husband created the script. You can reach him at [email protected] I told him to expect your email. Hugs, Danielle |
|
|
|
|
|
#19 | |
|
Too lazy to set a custom title
Join Date: Aug 2001
Location: The Netherlands
Posts: 13,723
|
Quote:
Andre
__________________
Questions? ICQ: 125184542 |
|
|
|
|