Bad Behavior Patch for Opera Users

Bad Behavior is an excellent ‘profiling’ plug-in that deters most spam bots and attacks on web-based scripts, especially blogs, wikis, and forums. It uses a very detailed and sophisticated combination of checks and algorithms to create a ‘spammer’s profile’ and if a visitor to your site fits it, it’ll block them.

The algorithm is so good that there are almost no false positives, and together with a decent spam plug-in like Akismet or Spam Karma 2, you’re blog will be forever clean. But it has a problem with Opera. Most builds of Opera trigger a false alarm, leaving your blog reader-less, especially with the release of Opera 9, an excellent browser in all rights, but there is a solution. Continue reading

Spoofed Spam from NeoSmart's Domain

An hour ago a spamming agency seems to have sent out thousands of messages from random @neosmart.net email adresses. NeoSmart Technologies was not involved in this spamming attempt (check the message headers!) and we’d like to assure everyone that we never have and we never will condone spam to come from our servers.

These messages were sent to random addresses, so whether or not you’re a member here doesn’t matter. Odds are, you won’t receive one of these emails, but we just wanted to make that all clear.

Some background on domain spoofing:

Continue reading

JavaScript “Protection:” Don't Fall for it!

Every once in a while it comes up again. JavaScript – used totally wrong. This times it’s Hivelogic’s “Enkoder” script reborn for WordPress. What people just don’t get is: JavaScript was never meant to be used as a heavy cavalry, a knight in shining armor, or else a bit of code that can may be used to do anything – because it’s not.

JavaScript can do a lot of things, but that doesn’t mean it should be used that way. But that’s not the problem – not this time. The problem is that people are still insisting on believing that using JavaScript to hide text means that the bad guys won’t ever see it. But that’s just not true.

Continue reading

Bye-Bye Akismet

It's been a hell of a month for Akismet on our site; for some reason we've had more false positives than real spam stuck in the filter, and more spam in the comments than real replies.. So we've decided to give Spam Karma 2 a chance.

I've noticed it has a helluva lot more options than Akismet, and at the very least the logic remains on our server and does not await a reply from a heavily-hit server on Automattic's end. We'll see if this does the trick, but we have high hopes!