Stop the madness!!!
Moderator: MaxCoderz Staff
-
- Calc Wizard
- Posts: 501
- Joined: Sat 28 May, 2005 5:34 am
- Location: Chesapeake, Virginia
- Contact:
Of course it would be incredibly anticlimatic if a bot didn't register just after you installed it.
http://kvince83.tengun.net/maxboard/pro ... file&u=426
http://kvince83.tengun.net/maxboard/pro ... file&u=426
-
- Calc King
- Posts: 2195
- Joined: Sun 27 Mar, 2005 4:06 am
- Location: sleeping
- Contact:
-
- Calc King
- Posts: 1513
- Joined: Sat 05 Aug, 2006 7:22 am
-
- Calc King
- Posts: 2195
- Joined: Sun 27 Mar, 2005 4:06 am
- Location: sleeping
- Contact:
-
- Calc King
- Posts: 1513
- Joined: Sat 05 Aug, 2006 7:22 am
- benryves
- Maxcoderz Staff
- Posts: 3089
- Joined: Thu 16 Dec, 2004 10:06 pm
- Location: Croydon, England
- Contact:
I'm assuming that the bot isn't actually registered by someone clicking around - I assume it's a piece of software that downloads and parses the HTML of the registration, sets the various fields and posts it back.
The thing is, a check box is not exactly robust as you don't send back whether it's ticked or not - you don't send it at all if it isn't ticked, and you just send back its value if it is ticked.
Therefore, all something has to do is spoof the box being ticked is to send the form back with the element still there. A more reliable thing would be a text box and "Are you human? Please type yes in the box".
The thing is, a check box is not exactly robust as you don't send back whether it's ticked or not - you don't send it at all if it isn't ticked, and you just send back its value if it is ticked.
Therefore, all something has to do is spoof the box being ticked is to send the form back with the element still there. A more reliable thing would be a text box and "Are you human? Please type yes in the box".
-
- Calc King
- Posts: 1513
- Joined: Sat 05 Aug, 2006 7:22 am
exactly
how about linking back and forth a few times?
i mean.. the person who wants to sign up has to click a few links that arent exactly link but use some nasty script to redirect when clicked.. or something like that..
and how about a textbox that should NOT be ticked?
(then a stupid bot may decide to tick it because it assumes it needs to be ticked?)
"Tick this checkbox if you are a bot" [checkbox goes here]
and ofcourse the more stuff you add the more chance you have the bot wouldnt eat the page anymore and freak out, and well then it didnt register..
how about linking back and forth a few times?
i mean.. the person who wants to sign up has to click a few links that arent exactly link but use some nasty script to redirect when clicked.. or something like that..
and how about a textbox that should NOT be ticked?
(then a stupid bot may decide to tick it because it assumes it needs to be ticked?)
"Tick this checkbox if you are a bot" [checkbox goes here]
and ofcourse the more stuff you add the more chance you have the bot wouldnt eat the page anymore and freak out, and well then it didnt register..