|
|
|
||||
|
Welcome to the GoFuckYourself.com - Adult Webmaster Forum forums. You are currently viewing our boards as a guest which gives you limited access to view most discussions and access our other features. By joining our free community you will have access to post topics, communicate privately with other members (PM), respond to polls, upload content and access many other special features. Registration is fast, simple and absolutely free so please, join our community today! If you have any problems with the registration process or your account login, please contact us. |
![]() |
|
|||||||
| Discuss what's fucking going on, and which programs are best and worst. One-time "program" announcements from "established" webmasters are allowed. |
|
|
Thread Tools |
|
|
#1 |
|
Confirmed User
Join Date: Nov 2001
Location: Porn Peddler
Posts: 679
|
Password Software
Anyone want to recommend some password software ?
We use Iprotect and a few other little tricks but we are hit so many fucking times per day its like pissing in the wind. We block each password hacking attempt after 5 guesses but these hackers use proxy servers. So, if they have 5 guesses per proxy and a list of 10,000 proxies they still get 50,000 shots at cracking a password. We own a copy of the source to Iprotect and Im considering having our programmer rewrite it so its more efficient. I figure if someone already wrote a program that can do the job I might as well buy it. Our prgrammer writes in C, php, java and can do anything but password protection is a learning curve for him. Of course its never good to experiment when it comes to passwords and memberships so Im saving that as plan "B". Thanks ! |
|
|
|
|
|
#2 |
|
rockin tha trailerpark
Industry Role:
Join Date: May 2001
Location: ~Coastal~
Posts: 23,088
|
you wont be able to stop em....dont bother.
the only real solution is a script like pennywise but thats pissing in the wind as well...... I suggest making the users choose 8+ character passes. Also...if you would like to inquire in some professional protection, let me know....i got some hookups |
|
|
|
|
|
#3 |
|
Confirmed User
Join Date: Oct 2001
Location: Scottsdale :)
Posts: 2,188
|
save yourself the hassle and buy pennywize, at pennywize.com.
Its only $30 a month (for the least number of logins per day) and it works fine. |
|
|
|
|
|
#4 |
|
Confirmed User
Join Date: Nov 2001
Location: Porn Peddler
Posts: 679
|
Pennywize pipes your logs off to another server, then analyzes them, then writes back your server to tell it to block a hacker. By the time that happens theres a good chance your server isnt responding anymore. I also had my programmer look at their software and ( at the time ) he told me when it switches to 'root' theres a large securtiy hazard. I also dont like the fact that the owner of Pennywize has obvious ties with his own adult programs and has acess to my logs. I havent looked at pennywize in a long time but I dont think its basic operation has changed. It worked great for me 5 years ago with 200 members but it didnt work so good with 15,000 members and a half million hack attempts per day. For a small site I recommend Pennywize but it couldnt take the stress on my sites. Any program where my server has to send info to another server just aint working for me.
|
|
|
|
|
|
#5 | |
|
Confirmed User
Join Date: Nov 2001
Location: Porn Peddler
Posts: 679
|
Quote:
|
|
|
|
|
|
|
#6 |
|
Pimping 8EZ
Industry Role:
Join Date: Jun 2001
Location: New Jersey
Posts: 3,530
|
We just released version 2.0 of passtrojan, you can check it out.
The beauty of it, it let's people who got the hotlinked password in, even though password is blocked, and you show them completely different page without actually having the nasty window to re-try the password popup for 3 times, and then getting the 403 page. This way you get all the traffic in for free, and you can send it out anywhere you want. check it out: http://www.passtrojan.com
__________________
CentroProfits.com - Make money with 3000+ Models! ModelCentro.com - Multiple award winning hosted CMS designed to run solo model sites, with affiliate program built in. Launch your model site in 24 hrs or less! FanCentro.com - Premium social network for SWs & Fans! |
|
|
|
|
|
#7 |
|
Confirmed User
Join Date: Nov 2001
Location: USA
Posts: 3,072
|
What OS are you on?
If you run NT Win2K I like DAF. Wont stop people from cracking them, but it only lets 1 user per username/password |
|
|
|
|
|
#8 |
|
Yes that IS me. Bitch.
Industry Role:
Join Date: Nov 2001
Posts: 14,149
|
Try PassHack Killer
|
|
|
|
|
|
#9 | |
|
rockin tha trailerpark
Industry Role:
Join Date: May 2001
Location: ~Coastal~
Posts: 23,088
|
Quote:
If you wanna learn more about how they get in, & how to keep em out, i suggest you do battle with them in the trench's so to speak. Only way to learn how to stop them is to see it first hand. Heres a hint "Dalnet" "IRC" "#hackedxxxpasswords" By the way....heres some names you may want to look at on the search engines "Golden Eye" "Brutus" "Aries" You find out how the fuckers are crackin at ya.....you'll find out how to stop em. I also like the Aussie Rebel Beat down idea |
|
|
|
|
|
|
#10 | |
|
Confirmed User
Join Date: Nov 2001
Location: Porn Peddler
Posts: 679
|
Quote:
|
|
|
|
|
|
|
#11 |
|
rockin tha trailerpark
Industry Role:
Join Date: May 2001
Location: ~Coastal~
Posts: 23,088
|
Heres one of your little friends.....
![]() |
|
|
|
|
|
#12 | |
|
Confirmed User
Join Date: Nov 2001
Location: Porn Peddler
Posts: 679
|
Quote:
I know what they are doing and how, but I dont know how to stop them. Its the friggin proxy servers that are the problem. Sometimes they even use AOL proxy servers and you sure cant block those.. |
|
|
|
|
|
|
#13 |
|
rockin tha trailerpark
Industry Role:
Join Date: May 2001
Location: ~Coastal~
Posts: 23,088
|
no....the aol & large isp ones, you really cannot stop.
however the foregin open port 8080,80 etc. you can stop ..but you would have to ping every visitor that came to your site. So basically your fucked unless your friends with the crackers ; ) I suggest you hire AUssie Rebel to take out the trash =) |
|
|
|
|
|
#14 |
|
rockin tha trailerpark
Industry Role:
Join Date: May 2001
Location: ~Coastal~
Posts: 23,088
|
FYI - deny.de is no longer
|
|
|
|
|
|
#15 |
|
Confirmed User
Join Date: Sep 2001
Location: North Carolina
Posts: 2,815
|
i had a long paragraph here, but i gave up on it because no matter what i say people are going to do the opposite
![]() |
|
|
|
|
|
#16 | |
|
Confirmed User
Join Date: Sep 2001
Location: North Carolina
Posts: 2,815
|
Quote:
|
|
|
|
|
|
|
#17 | |
|
Confirmed User
Join Date: Nov 2001
Location: Porn Peddler
Posts: 679
|
Quote:
|
|
|
|
|
|
|
#18 | |
|
Confirmed User
Join Date: Nov 2001
Location: Porn Peddler
Posts: 679
|
Quote:
|
|
|
|
|
|
|
#19 |
|
rockin tha trailerpark
Industry Role:
Join Date: May 2001
Location: ~Coastal~
Posts: 23,088
|
Ahhhhh ok the other day it was going to security.de or sum shit.
Guess they got it back up ; ) |
|
|
|
|
|
#20 |
|
aka K-Man
Industry Role:
Join Date: Oct 2001
Location: The Gutter
Posts: 29,295
|
LoL i invented this technology for porn sites in 1995 thru CyberErotica...
__________________
Crypto HODLr Crypto mining Angel investor |
|
|
|
|
|
#21 |
|
Confirmed User
Join Date: Nov 2001
Location: Southern California
Posts: 328
|
BTW Sleepy ... terrific thread ... thank you very much ...
Very informative ...
__________________
erotictrance |
|
|
|
|
|
#22 |
|
Confirmed User
Join Date: May 2001
Posts: 5,335
|
Talk to Oliver Klozov he has some good shit on the way
__________________
ReliableServers.com - NO REF LINK! |
|
|
|
|
|
#23 | |
|
Confirmed User
Join Date: Nov 2001
Location: Porn Peddler
Posts: 679
|
Quote:
|
|
|
|
|
|
|
#24 |
|
Confirmed User
Join Date: Nov 2001
Location: Southern California
Posts: 328
|
Well Sleepy, I don't really know this tech stuff very well ... so excuse my ignorance ...
But I am trying to learn ... so I am grateful for this thread ... And what I continually hear is that any off the shelf password protect program does tend to get hacked eventually ... obviously because a lot of webmasters use it ... and the hackers get a lot of mileage out of it ... The only real solution that I can see is to develop your own proprietary stuff ... But that's bad news for someone like me who doesn't have the means or expertise to do so ...
__________________
erotictrance |
|
|
|
|
|
#25 | |
|
Confirmed User
Join Date: Nov 2001
Location: Porn Peddler
Posts: 679
|
Quote:
|
|
|
|
|
|
|
#26 |
|
Confirmed User
Join Date: Nov 2001
Location: Southern California
Posts: 328
|
Oh ... I wasn't feeling insulted at all Sleepy ...
I am, in fact, ignorant on a lot of this stuff ... LOL. I was just stating the truth about myself ... not responding to you in that regard ... If you do come up with some solution to all of this though ... I'm all ears ...
__________________
erotictrance |
|
|
|
|
|
#27 | |
|
Confirmed User
Join Date: Nov 2001
Location: Southern California
Posts: 328
|
Quote:
__________________
erotictrance |
|
|
|
|
|
|
#28 |
|
Registered User
Industry Role:
Join Date: Aug 2001
Location: Arkansas
Posts: 70
|
Sleepy,
If you want to block 95% of the button pushers, make your login a form based login like globill. You will notice a dramatic decrease. Note: let's see if my signature is wack. |
|
|
|
|
|
#29 |
|
Registered User
Join Date: Jun 2002
Posts: 9
|
Ovelo Sentry, www.ovelo.com, doesn't require root like Pennywize so there isn't a security breach!
|
|
|
|