Archives

April 2004 (7)
March 2004 (12)
February 2004 (12)
January 2004 (22)
December 2003 (19)
November 2003 (16)
October 2003 (26)
September 2003 (18)
August 2003 (38)
July 2003 (80)
June 2003 (13)
May 2003 (24)
April 2003 (76)
March 2003 (75)
February 2003 (51)
January 2003 (73)

Category

Family (5)
FYI (18)
Games (2)
Geek (88)
Geographic (3)
Hacks (13)
Home (15)
Humor (54)
Ideas (20)
Ideaspace (15)
Local (15)
Metadata (10)
Microsoft (2)
MovableType (5)
Nitwits (66)
PKI (2)
Politics (22)
Quotes (3)
RDF (15)
RSS (4)
Security (3)
Semantic Web (13)
Site Info (13)
Social Networks (1)
Spam (9)
Sysadmin (1)
Tips (2)
Tivo (2)
TMFTOTHD (1)
To Do (1)
Unlisted (1)
Web (3)
Windows (1)

Local

« MetroBlogs »
DC metroblogs
beltway bloggers

Links


Assorted bits

Blogroll Me!
GeoURL
Listed on BlogShares




October 12, 2003

Foiling comment spam

Several ideas come to mind when thinking of how to foil comment spammers.

One powerful idea is to use shared blacklists. The idea being as different sites learn the IP addresses of the spammers we share them. This would help block them across many different sites before they even get there.

To make this even more powerful I'm thinking about applying an old idea I've used for robots.txt. That's to put up some 'bait' pages and hidden forms. If hidden forms are put into comment pages it might be possible to capture the IP addresses of things that attempt to use them. As in, hide a form or two in your legitimate comment page. Have them point to another page that actually accepts postings. Then track the IP addresses of anything actually using the page.

The idea here is that nothing should be noticing, let alone using, those hidden pages. But if something spidering along happened to accidentally visit the pages you wouldn't be banning them unless they actually tried using them.

An added safeguard would be to put the URLs of the hidden form pages into your robots.txt file. No legitimate spider or bot should ever visit a page listed in robots.txt.

This way you'd really only end up catching addresses making deliberate attempts to abuse your site.

Spam
Perma  | TrackBack (1) | 12:39 PM  | xml

Navigation

Recent Entries

America and Europe: Vive la différence?
Server changes afoot
Diet behavior mod
Googling for sensitive info
Outlook 2003 and IMAP, a marriage made in Hell
Bike to Work Day, May 7th
Speakeasy rocks
Zippo USB?
When geographic data is nowhere 'near' correct
Local campaign contributions

User comments
Trackbacks

Contact

send me an e-mail E-mail
chat with me using MS messenger MSN Messenger
chat with me via AIM America Online
chat with me on ICQ ICQ
chat with me on Yahoo! Yahoo
Add my vCard to your electronic addressbook vCard
Friend of a Friend FoaF

Syndication

XML  RDF  CDF

Comments

XFML

Extra Stuff

foaf
vCard
pgp info
Linked In
Powered by
Movable Type 2.64