<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Goldsboro Web Development &#187; super captcha</title>
	<atom:link href="http://goldsborowebdevelopment.com/tag/super-captcha/feed/" rel="self" type="application/rss+xml" />
	<link>http://goldsborowebdevelopment.com</link>
	<description>Award-Winning Services - Expect nothing less</description>
	<lastBuildDate>Wed, 28 Jul 2010 04:01:55 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.0</generator>
		<item>
		<title>Super CAPTCHA</title>
		<link>http://goldsborowebdevelopment.com/2010/05/super-captcha/</link>
		<comments>http://goldsborowebdevelopment.com/2010/05/super-captcha/#comments</comments>
		<pubDate>Thu, 06 May 2010 12:48:59 +0000</pubDate>
		<dc:creator>Michael L Wells</dc:creator>
				<category><![CDATA[Applications]]></category>
		<category><![CDATA[Portfolio]]></category>
		<category><![CDATA[anti-spam]]></category>
		<category><![CDATA[bots]]></category>
		<category><![CDATA[Multi-User]]></category>
		<category><![CDATA[sCAPTCHA]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[spam]]></category>
		<category><![CDATA[super captcha]]></category>
		<category><![CDATA[Wordpress]]></category>
		<category><![CDATA[Wordpress MU]]></category>
		<category><![CDATA[WPMU Super CAPTCHA]]></category>

		<guid isPermaLink="false">http://goldsborowebdevelopment.com/?p=271</guid>
		<description><![CDATA[Super CAPTCHA was one of the first pieces of software we developed under the General Public License. Since we developed it, it ran across the internet like wild-fire as everyone running WordPress blogs knew they were vulnerable to one thing &#8212; Spam. It really isn&#8217;t very fun to login to your blog every day and [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://goldsborowebdevelopment.com/2010/05/super-captcha/supercaptcha/" rel="attachment wp-att-272" ><img class="alignleft size-medium wp-image-272" title="supercaptcha" src="http://goldsborowebdevelopment.com/wp-content/uploads/2010/05/supercaptcha-300x168.png" alt="" width="300" height="168" /></a>Super CAPTCHA was one of the first pieces of software we developed under the General Public License.  Since we developed it, it ran across the internet like wild-fire as everyone running WordPress blogs knew they were vulnerable to one thing &#8212; Spam.  It really isn&#8217;t very fun to login to your blog every day and spend two hours sifting through spam, so we developed this piece of software and figured that it would be a show of low morale character to sell the product being there were so many people whom really needed the product.  So we published it for the public and today, over <strong><a rel="nofollow" href="http://www.google.com/#hl=en&amp;source=hp&amp;q=Secured+by+Super+CAPTCHA&amp;aq=f&amp;aqi=&amp;aql=f&amp;oq=&amp;gs_rfai=&amp;fp=f0c6eccb169f9f02"  target="_blank">110,000 WEBSITES WORLD-WIDE USE IT</a></strong>.</p>
<p>This simple &#8220;plugin&#8221; forces those registering or logging into a WordPress website to first have to answer a question based on an image with words written on it.  This piece of software is revolutionary because it was the first piece of CAPTCHA on the internet to start the trend of using random armaments to the image to keep the spam bots from &#8220;pre-programing&#8221; image readers to scan the image for the answer, automatically.  This software actually changes, at random, several aspects of the image, from the font type, font color, and right down to the tilt and angles the fonts are rendered at.  In fact the software INTENTIONALLY places some fonts half-way off the image so the &#8220;human reasoning engine&#8221; must prevail in order to correctly answer the question.  Sometimes people just don&#8217;t get it, and we got it, so, we made it even easier for humans by adding an audio download that verbally reads the question to you!</p>
<p>Here are a few of the sites using our software:</p>
<ul>
<li><a href="http://greensboroistalking.com/" >Greensboro Is Talking</a></li>
<li><a href="http://fayettevillecreates.com/" >Fayetteville Creates</a></li>
<li><a href="http://developmentprofessionals.org" >Development Professionals</a></li>
<li><a href="http://www.marketxplorer.com" >Market Explorer</a></li>
<li><a href="http://hyrxx.com/" >Hyrxx</a></li>
<li><a href="http://nuara.ru" >Nuara</a></li>
<li><a href="http://hoosieraccess.com" >Hoosier Access</a></li>
<li><a href="http://goblogke.com" >GoBlogke</a></li>
<li><a href="http://vitaeblog.com/" >Vitae Blog</a></li>
<li><a href="http://thirdfloorgamers.com/" >3rd Floor Gamers</a></li>
<li><a href="http://www.crcministries.com/" >Cross Roads (CRC) Ministries</a></li>
<li><a href="http://socialmediaclub360.com/" >Social Media Club 360</a></li>
<li><a href="http://fciacfootballblog.com/" >FCIAC Footbal</a></li>
<li><a href="http://www.bcieurobib.com/" >BCI Library Design</a></li>
<li><a rel="nofollow" href="http://www.google.com/#q=Secured+by+Super+CAPTCHA&amp;hl=en&amp;sa=2&amp;fp=f0c6eccb169f9f02" >110,000+ MORE ON GOOGLE</a></li>
</ul>
<p>&#8220;<em>Gee, thats a lot!  Now how do I know your code is actually in and being used in those sites?</em>&#8221;</p>
<p>In order for someone to use the code, we stipulated that they must provide in the footer of the site credits to the software, you should see &#8220;Powered by Super-CAPTCHA&#8221; at the bottom of each website with a link back to our web-page.</p>
]]></content:encoded>
			<wfw:commentRss>http://goldsborowebdevelopment.com/2010/05/super-captcha/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>Useless Methods Against Bots</title>
		<link>http://goldsborowebdevelopment.com/2010/01/useless-methods-against-bots/</link>
		<comments>http://goldsborowebdevelopment.com/2010/01/useless-methods-against-bots/#comments</comments>
		<pubDate>Sun, 24 Jan 2010 06:44:41 +0000</pubDate>
		<dc:creator>Michael L Wells</dc:creator>
				<category><![CDATA[News]]></category>
		<category><![CDATA[Press Release]]></category>
		<category><![CDATA[anti-bot]]></category>
		<category><![CDATA[anti-spam]]></category>
		<category><![CDATA[captcha]]></category>
		<category><![CDATA[super captcha]]></category>

		<guid isPermaLink="false">http://goldsborowebdevelopment.com/?p=90</guid>
		<description><![CDATA[Many WordPress MU blog admins are going after spam registration and spam comments in the wrong ways.  Lately I have been doing some studying on the methods in which spam bots attack websites with this spam and the reasons of &#8220;why&#8221;. METHODOLOGY Bots usually utilize cURL, the open source PHP package used to gather data [...]]]></description>
			<content:encoded><![CDATA[<p>Many WordPress MU blog admins are going after spam registration and spam comments in the wrong ways.  Lately I have been doing some studying on the methods in which spam bots attack websites with this spam and the reasons of &#8220;why&#8221;.</p>
<p><strong>METHODOLOGY</strong><br />
Bots usually utilize cURL, the open source PHP package used to gather data from a web page and access external web pages to include in<span id="more-90"></span> its own script or to dump in a database.  This package is very effective in turning dinosaur websites that refuse to use feed systems into a neatly laid out feed for use in its own website or syndication in other websites. cURL allows the developer to allow the program to mimic any web browser out there as far as what the targeted site sees and logs, and it can be run from nearly any hosting provider out there.</p>
<p>This makes it extremely hard to actually stop them because someone whom has 50 hosting accounts and the ability to make the &#8220;referring&#8221; address and &#8220;user agent&#8221; (aka web browser) to appear to be anything they want makes it especially hard to identify the bots.  I created a program called <a href="http://goldsborowebdevelopment.com/product/super-captcha/" >Super CAPTCHA</a> for the WordPress MU based websites and Buddypress.  This system protects the sites against bot registrations and brute force login attacks by simply displaying an obscure image with words on it, intentionally cutting off a few letters or making some letters completely unreadable forcing the human logic engine to step forward and complete the puzzle.  Every bot I have tried to use on my own website has failed to no avail and I have been using those that these false &#8220;SEO Specialist Company&#8221;s use.</p>
<p>I then added a logging mechanism that logs all failed registrations and automatically &#8220;perma-blocks&#8221; registrations that fail more than 5 times making even a successful attack an utter failure.  With this, I have analyzed these bots and the system in which they use to attack websites and did determine that they use different user agents and even clone themselves to appear legitimate bots like Google.</p>
<p>Here is an example from the logs:</p>
<blockquote><p><em><strong><a href="http://www.ipchecking.com/?ip=174.133.10.71&amp;TB_iframe=true&amp;width=1040&amp;height=534" title="Lookup IP: 174.133.10.71" >47.a.85ae.static.theplanet.com</a></strong> <a href="http://www.who.is/whois-ip/ip-address/174.133.10.71/&amp;TB_iframe=true&amp;width=1040&amp;height=534" title="WhoIs: 174.133.10.71" >174.133.10.71</a> | User: coiamjmartzv | <a href="http://vraul.com/wp-admin/admin.php?page=super-captcha/Logs&amp;viewTYPE=expand#" title="Email: coiamjmartzv@blogstores.info" >Email: coiamjmartzv@blogstores.info</a><br />
Mozilla/5.0 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)</em></p></blockquote>
<p>As you can see, they use the EXACT user agent that the Google bot uses, however the Google bot has never made a post on any of my websites; ever, and it sure loves to crawl every single page I have ever published.  This means that these people have gotten smarter, making IP banning and user-agent banning about as effective as using a pea-shooter against an armored tank.</p>
<p><strong>WHY THEY DO IT</strong><br />
Many people ask me, &#8220;What the hell do they get out of registering a blog on my website?&#8221;.  The answer is a bit of logic, common sense, and thinking like your opponent.  In this case, applying logic, they are targeting sites that host blogs and blogs running on systems that have a link from a &#8220;Google Ranked&#8221; page to their own blog. This by itself gives their newly created blog a page rank, usually with just a months time.  From there, they post links, some hidden to regular web browsers using &lt;style&gt;&#8217;s and &lt;span style=&#8221;display: none;&#8221;&gt;s so that the links are viable to search engines.  So when it boils right down to it, they are spamming your blog to artificially inflate their master-website&#8217;s page ranks, which will in return make their search results stronger when searching them on search engines like Google and Bing.</p>
<p>Thankfully there are people like me out there, that strive to do nothing more than help out public places and improve the quality of content on the web (as I grow tired of searching for something and having to sift through 100-200 websites of spam links before reaching the website I was looking for in the first place).  If you are a WordPress MU blog owner, I strong suggest your download <a href="http://goldsborowebdevelopment.com/product/super-captcha/" >Super CAPTCHA</a> for your blog.  I only ask that in return, you do me 2 favors: 1) Keep the credits in tact, and 2) let me know what you think.</p>
]]></content:encoded>
			<wfw:commentRss>http://goldsborowebdevelopment.com/2010/01/useless-methods-against-bots/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
	</channel>
</rss>
