|
|
|
||||
|
Welcome to the GoFuckYourself.com - Adult Webmaster Forum forums. You are currently viewing our boards as a guest which gives you limited access to view most discussions and access our other features. By joining our free community you will have access to post topics, communicate privately with other members (PM), respond to polls, upload content and access many other special features. Registration is fast, simple and absolutely free so please, join our community today! If you have any problems with the registration process or your account login, please contact us. |
![]() |
|
|||||||
| Discuss what's fucking going on, and which programs are best and worst. One-time "program" announcements from "established" webmasters are allowed. |
|
|
Thread Tools |
|
|
#1 |
|
Confirmed User
Join Date: Nov 2004
Location: Monster Rain
Posts: 214
|
Cross-site IP blacklisting - testers needed
Anyone interested in trying out an early version of our cross-site IP blacklisting system, please hit me up on ICQ. Currently it supports PHP-driven sites that have an existing security framework.
Anyone who helps us out in the testing by using it on one of their sites will get a free year of service once we launch the final product. The concept of the current version: Basically, if you detect a surfer leeching/hacking/logging into a blocked account/etc using your existing security functions, you can easily add their IP to the blacklist by calling a php include. The IP will remain blacklist for a to-be-determined amount of time. You will be one of many sites that are adding fuckos to the blacklist. Then, on your pages where you start a session or take a login you can check the blacklist to see if that surfers IP exists in the list, and do something fun with them if it does. It requires you to put two small PHP files onto your server (one to check the blacklist, one to add to it) and one 'include' for each file in the appropriate place in your existing PHP scripts. Lots more to come in this system as posted in some other threads... this is just an early version with some core functionality that we are looking to get some statistics and feedback on.
__________________
Secure PHP Programming - Secure E-Commerce Design Site & Server Security Reviews - Code Reviews The new and improved iBOUNCER. Give us a try. ICQ: 201971159 or http://www.iBOUNCER.com |
|
|
|
|
|
#2 |
|
So Fucking Banned
Join Date: Jul 2005
Posts: 312
|
Don't touch this guy or his services.
Use StrongBox instead. |
|
|
|
|
|
#3 |
|
Confirmed User
Join Date: Nov 2004
Location: Monster Rain
Posts: 214
|
Dont feed the troll. This guy has never had any dealings with me or my company, but for some reason insists on following-up every post I make with some childish comment.
We work in ADDITION to things like StrongBox or PennyWize, anyway.
__________________
Secure PHP Programming - Secure E-Commerce Design Site & Server Security Reviews - Code Reviews The new and improved iBOUNCER. Give us a try. ICQ: 201971159 or http://www.iBOUNCER.com |
|
|
|
|
|
#4 | |
|
Strength and Honor
Join Date: Jul 2004
Location: Europe
Posts: 16,540
|
Quote:
But this is the first good thing you're saying. use Strongbox, it rocks. |
|
|
|
|
|
|
#5 | |
|
Confirmed User
Industry Role:
Join Date: Jun 2003
Location: Costa Rica
Posts: 1,953
|
Quote:
![]()
__________________
Yii Framework Guru - Seasoned PHP vet - Partner @ XXXCoupon.com |
|
|
|
|
|
|
#6 |
|
Confirmed User
Join Date: Jul 2004
Posts: 847
|
By far one of the worst ideas ever.
|
|
|
|
|
|
#7 |
|
Confirmed User
Join Date: Jun 2002
Location: austin, tx
Posts: 1,911
|
Easier ways to do this than php includes. Better, automagic ways even.
__________________
http://www.flickr.com/photos/zoddler/ |
|
|
|
|
|
#8 |
|
Confirmed User
Join Date: Jul 2004
Posts: 847
|
Lets give anyone who uses your software the ability to ban my members and cause me chargebacks... sounds like we got a winner here
|
|
|
|
|
|
#9 |
|
Confirmed User
Industry Role:
Join Date: Jan 2004
Location: Nor'easterland
Posts: 1,914
|
IP based denial is always going to have downsides. In this age of NATs and proxies, tracking a user via IP is only a 'pretty good' method, but not optimal.
I do IP-based denial on local machines, but I wouldn't share those... not because I want to keep the information to myself, but I'd rather not 'poison' other peoples' legitimate customers because some schmuck that was already easily detected and denied access happened to be using the same proxy/whatever. ![]()
__________________
~
|
|
|
|
|
|
#10 |
|
Confirmed User
Join Date: Nov 2004
Location: Monster Rain
Posts: 214
|
If one site finds that a user is hacking/leeching/whatever - do you want that user trying to find their way into your site? That's the concept of a cross-site blacklist.
__________________
Secure PHP Programming - Secure E-Commerce Design Site & Server Security Reviews - Code Reviews The new and improved iBOUNCER. Give us a try. ICQ: 201971159 or http://www.iBOUNCER.com |
|
|
|
|
|
#11 | |
|
Confirmed User
Join Date: Nov 2004
Location: Monster Rain
Posts: 214
|
Quote:
__________________
Secure PHP Programming - Secure E-Commerce Design Site & Server Security Reviews - Code Reviews The new and improved iBOUNCER. Give us a try. ICQ: 201971159 or http://www.iBOUNCER.com |
|
|
|
|
|
|
#12 |
|
So Fucking Banned
Join Date: Jul 2005
Posts: 312
|
A script kiddie turned "security professional" offering adult companies penetration testing and server security assessment.
He was owned on FAQ forum a few months ago, now he's back with his shitty services. http://www.gofuckyourself.com/showthread.php?t=390381 |
|
|
|
|
|
#13 | |
|
Confirmed User
Industry Role:
Join Date: Jun 2003
Location: Costa Rica
Posts: 1,953
|
Quote:
![]()
__________________
Yii Framework Guru - Seasoned PHP vet - Partner @ XXXCoupon.com |
|
|
|
|
|
|
#14 | |
|
Confirmed User
Join Date: Nov 2004
Location: Monster Rain
Posts: 214
|
Quote:
__________________
Secure PHP Programming - Secure E-Commerce Design Site & Server Security Reviews - Code Reviews The new and improved iBOUNCER. Give us a try. ICQ: 201971159 or http://www.iBOUNCER.com |
|
|
|
|
|
|
#15 | |
|
Confirmed User
Join Date: Nov 2004
Location: Monster Rain
Posts: 214
|
Quote:
This concept may not be for everyone... few people have come up with any new security solutions in 10 years that I've been working in the adult world, yet webmasters still complain about the same problems, over and over.
__________________
Secure PHP Programming - Secure E-Commerce Design Site & Server Security Reviews - Code Reviews The new and improved iBOUNCER. Give us a try. ICQ: 201971159 or http://www.iBOUNCER.com |
|
|
|
|