I'm puzzled

It's still at it, another one has just popped up!!
 
Overnight from abroad, probably taking advantage of the mods occasionally sleeping, even if it feels like they are ever-present…
 
probably taking advantage of the mods occasionally sleeping,
I know terrible eh? how dare we. :D

All spammers and their posts have been fitted with concrete boots. :D
 
I know terrible eh? how dare we. :D

All spammers and their posts have been fitted with concrete boots. :D


You lot been sleeping again :p

Seems your spammers are master escape artists :D
 
Last edited:
You lot been sleeping again :p

Seems you spammers are master escape artists :D


I was thinking similar, maybe they should sleep in shifts :D

Looks like a vulnerability has been found and exploited, as I have a feeling that new posters have to be checked and have to have their first posts moderated.
I wonder if other XenForo sites have been affected.
 
Makes interesting reading ,
oh no it’s gone now I’ll never know how the story ended
 
Last edited:

Attachments

  • 1679130701893.png
    1679130701893.png
    385 bytes · Views: 2
Seems your spammers are master escape artists :D
There wasn't enough ballast in the concrete boot mix :D
I have a feeling that new posters have to be checked and have to have their first posts moderated.
Any posts less than 3 with a link is caught and in a mod queue.
 
There wasn't enough ballast in the concrete boot mix :D

Any posts less than 3 with a link is caught and in a mod queue.
Hopefully now sunk without trace ! :)
 
spoilsport I was just going to qualify as a brain surgeon from California tech uni to :cool::dummy::wave:
 
spoilsport I was just going to qualify as a brain surgeon from California tech uni to :cool::dummy::wave:
Check it out tomorrow, I'm sure they aren't finished yet :D
 
I’m sure we could design a suitable certificate for you Gav, with a tuition fee to graduate from TP University…
 
Allowing people to sign up and post is not a "vulnerability" its the whole point of having a forum
Of course not, obviously.
I don't know this software, I haven't used it, but the others I have used have settings that can prevent similar occurrences (though some do require more admin work, which is not always the answer), so I thought that maybe a way has been found to circumvent any such settings, I also said I wondered if other boards using the same software had had a similar problem, which could be likely if it had happened.

Asgaros Forum had a similar problem at the end of last year, and was removed from WP plugins for a while, Simple Machines had a similar problem about 8 (or more, can't recall exactly) years ago and 1&1 stopped hosting it until it was fixed.

I was certainly not referring to the ability to sign up as a vulnerability :)

 
Back
Top