![]() |
![]() |
![]() |
||||
Welcome to the GoFuckYourself.com - Adult Webmaster Forum forums. You are currently viewing our boards as a guest which gives you limited access to view most discussions and access our other features. By joining our free community you will have access to post topics, communicate privately with other members (PM), respond to polls, upload content and access many other special features. Registration is fast, simple and absolutely free so please, join our community today! If you have any problems with the registration process or your account login, please contact us. |
![]() ![]() |
|
Discuss what's fucking going on, and which programs are best and worst. One-time "program" announcements from "established" webmasters are allowed. |
|
Thread Tools |
![]() |
#1 |
So Fucking Banned
Join Date: Mar 2002
Location: Far out in the uncharted backwaters of the unfashionable end of the Western Spiral arm of the Galaxy
Posts: 893
|
![]() Up until now, trading scripts (CJ scripts included) were (and still are) relying on the value called HTTP_REFERER (one of the parameter passed by visitors? browser to your Web-server when moving from page to page) to identify the origin of a visitor and by that, accrediting the correct trader for traffic he sent. In return for traffic a trader sends to you, you send traffic back to his site (sometimes additional factors such as ?quality? of traffic influenced the amount of traffic you send back). That is how trading relations form today: If you do not get traffic from your trader you do not send any traffic back to him.
If you've ever wondered why most CJ sites requires that the return URL will be in the same domain as the one where you send traffic from, it is because it's a way to identify that traffic is sent by you ? through a match of the Domain. Unfortunately, this is one of the biggest apparent weaknesses of trading and CJ scripts. The reason is that a considerable percentage of traffic over the Internet lacks this HTTP_REFERER parameter - over 13%! There are many reasons for that, for example: around 4% of traffic over the Internet is generated by users who use Norton personal firewall. In addition to being a firewall, it is also a system to "protects your privacy". What Norton personal firewall does is eliminating the HTTP_REFERER parameter and replacing it with an encrypted and hashed (?unrecognizable?) HTTP_WEFERER. More reasons for the lack of HTTP_REFERER will be: other privacy protection software, HTTP_REFERER disabled browsers, visitors behind proxies and more (most don't even supply a hashed version of this parameter ? not that one can really be used) ? As a matter of fact the percentage of HTTP_REFERER "free" traffic is constantly increasing, part of it is because of the popularity of firewall while the other part is because of the increasing concern of people with privacy. This number is predicted to increase until majority of traffic over the Internet lacks this parameter. So what is the problem? Well... if you're trading with somebody and sending 1000 hits, (assuming he uses a CJ script or any other trading script that relies on HTTP_REFERER) your trader will see only 850 to 900 hits coming from you. If you ever wondered why your traffic counters are sometimes have a totally different value than your trader?s, it is (most probably) not because he/she cheat you (unless the difference is much bigger than that), but because of the absence of HTTP_REFERER and their inability to identify all traffic sent by you as such. Also - if you ever wondered why so many sites say they send 120% of the traffic they get, it is not because they are too generous but because it goes to compensate for the lost traffic and the lack of accuracy of the script. This 120% "trick" is often used as the ?official? way to compensate for the lost traffic. But as the percentage of traffic without HTTP_REFERER grows there will be a need to increase the 120% to 150% or even 200%. This may be sooner than you think. Some use a ?special? logic saying that ?everybody looses to everybody, so in the end we are all even ;)?? Now, the question you may want to ask yourself is: ?Is this an acceptable solution to compensate for the inaccuracy? Is it a valid way? Do I like it??? While the problem is less urgent at 13%, what would you say when it triples and gets to 40%? Ask yourself the following question: ?Would you sign up to an affiliation program, where 30% of your sales are lost??? |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#2 |
Guest
Posts: n/a
|
You don't really expect me to read all this, do you ?
|
![]() ![]() ![]() ![]() ![]() |
![]() |
#3 |
Guest
Posts: n/a
|
Ok, I read it all, didn't get anything new out of it, guess I'll just Walk On ..... or I ask for a reinvention of the http standard protocol.
|
![]() ![]() ![]() ![]() ![]() |
![]() |
#4 |
Guest
Posts: n/a
|
Actually - sweet shit. Soon all CJ sites will die, so will TGPs and there will be less free porn
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#5 |
Confirmed User
Join Date: Feb 2002
Location: Seattle
Posts: 1,070
|
yep, correct.
good trading scripts should let you give out specific URLs for other sites to link to. ie www.cjsites.com/in.cgi?from=crapola.com i think autorank will do this, but it's not exactly a trading script.
__________________
![]() |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#6 |
aspiring banker
Join Date: Mar 2002
Location: toronto
Posts: 10,870
|
is there a better way?
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#7 | |
Confirmed User
Join Date: Jul 2001
Posts: 600
|
Quote:
![]() We use it on startgp.com and its damn cool!! ![]() |
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#8 | |||
So Fucking Banned
Join Date: Mar 2002
Location: Far out in the uncharted backwaters of the unfashionable end of the Western Spiral arm of the Galaxy
Posts: 893
|
Quote:
One way will be, as salsbury suggested.. Quote:
Quote:
BTW. thx Mark ![]() |
|||
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#9 |
Confirmed User
Join Date: Oct 2001
Posts: 6,693
|
Specific URL's (http://www.domain.com/in.cgi?myid=FATPAD) aren't a new invention.
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#10 | |
So Fucking Banned
Join Date: Mar 2002
Location: Far out in the uncharted backwaters of the unfashionable end of the Western Spiral arm of the Galaxy
Posts: 893
|
Quote:
![]() |
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#11 | |
Confirmed User
Industry Role:
Join Date: Aug 2001
Location: AdultReviews.com - Denmark - ICQ: 6565211
Posts: 920
|
Quote:
If everybody started using specific urls again, the problem would be solved.
__________________
![]() Get your paysite reviewed by Adult Reviews Get your paysite reviewed by Porn Reviews |
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#12 |
Confirmed User
Join Date: Aug 2002
Posts: 160
|
Can I try to get on your top 30.
![]() I tested my shitty bot on cjultra and it works like a dream, but I'd love to have a little go ![]() |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#13 |
Confirmed User
Join Date: Aug 2002
Posts: 160
|
Don't worry no syn floods or anything dirty like that.
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#14 | |
So Fucking Banned
Join Date: Mar 2002
Location: Far out in the uncharted backwaters of the unfashionable end of the Western Spiral arm of the Galaxy
Posts: 893
|
Quote:
![]() Standing on 13-14% today - this will very soon grow considerably. It is soon to be a thing that can not be disregarded. Only think about what will happen if the next version of ZoneAlarm includes REFERER encrypting/disabling ![]() |
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#15 |
Confirmed User
Join Date: Aug 2002
Posts: 160
|
would it not be easier to spoof if you only rely on the username that is in the url?
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#16 | |
So Fucking Banned
Join Date: Mar 2002
Location: Far out in the uncharted backwaters of the unfashionable end of the Western Spiral arm of the Galaxy
Posts: 893
|
Quote:
Besides - all easy spoofing mechanism are easily detectable. If someone is not smart enough to use advanced cheating - he/she will be easily detected and flushed. If someone is smart enough to deploy advanced cheating and spoofing "tools" - its very much likely that REFERER will not be a deterrant. In any way - the most smart cheating mechanism revolve not around IDs nor around referer. |
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#17 |
Confirmed User
Join Date: Aug 2002
Posts: 160
|
but http://yoursite.com?id=blah could come from anywhere and referer can be changed to whatever just as easy.
so what would say should be secure? |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#18 | |
So Fucking Banned
Join Date: Mar 2002
Location: Far out in the uncharted backwaters of the unfashionable end of the Western Spiral arm of the Galaxy
Posts: 893
|
Quote:
http://yoursite.com?id=blah can come from anywhere - TRUE http://yoursite.com with the appropriate REFERER can ALSO come from anywhere - that is not hard to fake. If you trust your security issues with the use of HTTP_REFERER (or even assist with that )you are tragically mistaken. It doesnt even help - you earn nothing in that aspect. If someone wants to cheat you - he will do so while you will still get the REFERER - trust cheaters ;) All HTTP_REFERER gives is - an easy URL to send traffic to coupled with a big and growing inaccuracy Its like letting grocery customers pay by presenting price tags - without showing the merchendise.. It will all work fine for the honost ones. On the other side, a bad customer can "pick" tags from cheaper products or even sneak some products he never intends to show the price tag for (some would call it stealing ;) ). IDs are not different in that aspect at all. The difference is not security - its accuracy in tracking and counting - a thing that could not be achieved with non-ID(REFERER-based) CJ scripts. |
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#19 | |
Confirmed User
Join Date: May 2002
Posts: 345
|
Quote:
![]()
__________________
Phat Servers - Fast servers, I use them.<br>Traffic Cash Gold - Every niche covered. |
|
![]() |
![]() ![]() ![]() ![]() ![]() |