Welcome to the GoFuckYourself.com - Adult Webmaster Forum forums.

You are currently viewing our boards as a guest which gives you limited access to view most discussions and access our other features. By joining our free community you will have access to post topics, communicate privately with other members (PM), respond to polls, upload content and access many other special features. Registration is fast, simple and absolutely free so please, join our community today!

If you have any problems with the registration process or your account login, please contact us.

Post New Thread Reply

Register GFY Rules Calendar
Go Back   GoFuckYourself.com - Adult Webmaster Forum > >
Discuss what's fucking going on, and which programs are best and worst. One-time "program" announcements from "established" webmasters are allowed.

 
Thread Tools
Old 12-07-2005, 06:48 PM   #1
Machete_
WINNING!
 
Industry Role:
Join Date: Oct 2002
Posts: 14,579
Who else think this is a security risk.....

Many affiliate program's have their link-codes like this:
http://domain.com/reftracler=ID
and ID = username in 50-60% of the cases...

I really don't feel good about people knowing my user-name..
They can take a brute force script + word-list.. and its just a matter of time before they have access to my account = my money

I like NATS because they encrypt the link - thanks guys... I wish more Programs would do the same
Machete_ is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 12-07-2005, 06:49 PM   #2
JoeMeca
So Fucking Banned
 
Join Date: Nov 2005
Location: Juicy's House! Icq: 265529404
Posts: 2,266
Yup i agree or a number like 487475 byt nope ahha
JoeMeca is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 12-07-2005, 06:51 PM   #3
SmokeyTheBear
►SouthOfHeaven
 
SmokeyTheBear's Avatar
 
Join Date: Jun 2004
Location: PlanetEarth MyBoardRank: GerbilMaster My-Penis-Size: extralarge MyWeapon: Computer
Posts: 28,609
Quote:
Originally Posted by ebus_dk
Many affiliate program's have their link-codes like this:
http://domain.com/reftracler=ID
and ID = username in 50-60% of the cases...

I really don't feel good about people knowing my user-name..
They can take a brute force script + word-list.. and its just a matter of time before they have access to my account = my money

I like NATS because they encrypt the link - thanks guys... I wish more Programs would do the same

if someone is going to go thru the trouble of trying to brute force your affiliate account , they would just decrypt your username before they tried to crack it.. all the nats codes do for me is make it harder to add link codes.
__________________
hatisblack at yahoo.com
SmokeyTheBear is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 12-07-2005, 06:53 PM   #4
Tempest
Too lazy to set a custom title
 
Industry Role:
Join Date: May 2004
Location: West Coast, Canada.
Posts: 10,217
Perhaps you should generate a random 10+ digit password... Maybe even do the same for the username...
Tempest is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 12-07-2005, 06:55 PM   #5
Machete_
WINNING!
 
Industry Role:
Join Date: Oct 2002
Posts: 14,579
Quote:
Originally Posted by SmokeyTheBear
if someone is going to go thru the trouble of trying to brute force your affiliate account , they would just decrypt your username before they tried to crack it.. all the nats codes do for me is make it harder to add link codes.
sure, but it could still make it a smaller risk
Machete_ is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 12-07-2005, 06:56 PM   #6
Tempest
Too lazy to set a custom title
 
Industry Role:
Join Date: May 2004
Location: West Coast, Canada.
Posts: 10,217
Quote:
Originally Posted by SmokeyTheBear
all the nats codes do for me is make it harder to add link codes.
Yep.. pisses me off since I use scripts for all my links and sites so things like campaign codes and stuff can be done by the script... After ARS shutting down all their sites and then hawgcash, I don't hard code any freakin links anymore unless it's a gallery I have to submit...
Tempest is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 12-07-2005, 06:57 PM   #7
iwantchixx
Too lazy to set a custom title
 
iwantchixx's Avatar
 
Industry Role:
Join Date: Oct 2002
Location: The Boonies
Posts: 12,860
I agree with smokey on this one, it's much easier to play with codes.
iwantchixx is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 12-07-2005, 06:58 PM   #8
SmokeyTheBear
►SouthOfHeaven
 
SmokeyTheBear's Avatar
 
Join Date: Jun 2004
Location: PlanetEarth MyBoardRank: GerbilMaster My-Penis-Size: extralarge MyWeapon: Computer
Posts: 28,609
Quote:
Originally Posted by ebus_dk
sure, but it could still make it a smaller risk
frankly i highly doubt it . if someone is determined to hack an affiliate account solely on a username they found , they would also be smart enough to decrypt the nats username that is very simply decoded.
__________________
hatisblack at yahoo.com
SmokeyTheBear is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 12-07-2005, 06:58 PM   #9
Machete_
WINNING!
 
Industry Role:
Join Date: Oct 2002
Posts: 14,579
Quote:
Originally Posted by Tempest
Perhaps you should generate a random 10+ digit password... Maybe even do the same for the username...
I keep 8 char strong passwords thats different from each site, but the username they can se in the code - that is the problem..

Just like I know Smokey uses "gfy" or "gfygfy" on many of his sites.. its fucked
Machete_ is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 12-07-2005, 07:00 PM   #10
Machete_
WINNING!
 
Industry Role:
Join Date: Oct 2002
Posts: 14,579
Guess its just me then
Machete_ is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 12-07-2005, 07:03 PM   #11
Hardlinks
Confirmed User
 
Join Date: May 2005
Location: Great White North
Posts: 1,333
Quote:
Originally Posted by ebus_dk
Guess its just me then

Seeing my ref code gives me wood.
Hardlinks is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 12-07-2005, 07:11 PM   #12
Tempest
Too lazy to set a custom title
 
Industry Role:
Join Date: May 2004
Location: West Coast, Canada.
Posts: 10,217
Quote:
Originally Posted by Hardlinks
Seeing my ref code gives me wood.
Especially when it's showing up in the google serps.
Tempest is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 12-07-2005, 07:29 PM   #13
JD
Too lazy to set a custom title
 
Industry Role:
Join Date: Sep 2003
Posts: 22,651
Quote:
Originally Posted by Tempest
Especially when it's showing up in the google serps.
werd
JD is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Post New Thread Reply
Go Back   GoFuckYourself.com - Adult Webmaster Forum > >

Bookmarks



Advertising inquiries - marketing at gfy dot com

Contact Admin - Advertise - GFY Rules - Top

©2000-, AI Media Network Inc



Powered by vBulletin
Copyright © 2000- Jelsoft Enterprises Limited.