Welcome to the GoFuckYourself.com - Adult Webmaster Forum forums.

You are currently viewing our boards as a guest which gives you limited access to view most discussions and access our other features. By joining our free community you will have access to post topics, communicate privately with other members (PM), respond to polls, upload content and access many other special features. Registration is fast, simple and absolutely free so please, join our community today!

If you have any problems with the registration process or your account login, please contact us.

Post New Thread Reply

Register GFY Rules Calendar Mark Forums Read
Go Back   GoFuckYourself.com - Adult Webmaster Forum > >
Discuss what's fucking going on, and which programs are best and worst. One-time "program" announcements from "established" webmasters are allowed.

 
Thread Tools
Old 07-02-2008, 06:04 PM   #1
Socks
Confirmed User
 
Industry Role:
Join Date: May 2002
Location: Toronto
Posts: 8,475
What's the best system for securing a paysite from crackers, etc?

Protecting content from getting to illegal sites starts with your websites, so why aren't most programs using a better system than a simple htaccess?

It's way better than it used to be, but still it's very common to have very little barrier to getting into a paysite. Very often webmasters submit sites to us with passwords like "review/review" so even the most basic of attacks is going to be successful.

Strongbox? That frog one? What's the best solution?

Has anyone noticed a difference after installing one of these?

The form based ones are much harder to attack vs pop-up style, and stop most programs and automated processes from grabbing your stuff - unless they custom write something basically, made for your sites specifically.

Treat them like car thieves.. Even the most basic protection will de-energize them into moving onto an easier target.

Now: Insert cracker jokes here. ;)
Socks is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 07-02-2008, 06:05 PM   #2
Shap
Confirmed User
 
Industry Role:
Join Date: May 2001
Posts: 8,313
Quote:
Originally Posted by Socks View Post
Protecting content from getting to illegal sites starts with your websites, so why aren't most programs using a better system than a simple htaccess?

It's way better than it used to be, but still it's very common to have very little barrier to getting into a paysite. Very often webmasters submit sites to us with passwords like "review/review" so even the most basic of attacks is going to be successful.

Strongbox? That frog one? What's the best solution?

Has anyone noticed a difference after installing one of these?

The form based ones are much harder to attack vs pop-up style, and stop most programs and automated processes from grabbing your stuff - unless they custom write something basically, made for your sites specifically.

Treat them like car thieves.. Even the most basic protection will de-energize them into moving onto an easier target.

Now: Insert cracker jokes here. ;)
The thieves are joining the site and paying for it and then stealing. Tough to stop that

You get my email about tomorrow night?
Shap is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 07-02-2008, 06:46 PM   #3
fris
Too lazy to set a custom title
 
fris's Avatar
 
Industry Role:
Join Date: Aug 2002
Posts: 55,363
using htaccess is a big mistake
__________________
Since 1999: 69 Adult Industry awards for Best Hosting Company and professional excellence.


WP Stuff
fris is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 07-02-2008, 06:51 PM   #4
Kard63
Confirmed User
 
Kard63's Avatar
 
Join Date: Nov 2003
Location: 237 619 975
Posts: 8,944
Who the fuck are you calling cracker, hahahahahaha !!!

































j/k
__________________
Kard63 is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 07-02-2008, 07:00 PM   #5
Hunter_ST
Confirmed User
 
Hunter_ST's Avatar
 
Join Date: Feb 2003
Location: Getting messy...
Posts: 763
Quote:
Originally Posted by Shap View Post
The thieves are joining the site and paying for it and then stealing. Tough to stop that
True dat!
__________________

Splosh Cash Wet and Messy Fetish Program
I hate to advocate drugs, alcohol, violence, or insanity to anyone, but they've always worked for me.
Hunter_ST is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 07-02-2008, 07:05 PM   #6
jact
Confirmed User
 
Join Date: Sep 2002
Location: Oakville, Canada
Posts: 9,134
We use Proxy Pass, and we generally have 10-20 users blocked at all times for password violations. Not the same people mind you, the quantity just seems to stay constant even after we resolve their sharing violation. I would prefer if it would do a password reset and send it to the customer's email but I guess blocking to an upsell page is good too.
__________________
Free agent
jact is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 07-02-2008, 07:06 PM   #7
directfiesta
Too lazy to set a custom title
 
directfiesta's Avatar
 
Industry Role:
Join Date: Oct 2002
Location: Punta Cana, DR
Posts: 29,605
Those guys are lethal ... damn crackers ....

__________________
I know that Asspimple is stoopid ... As he says, it is a FACT !

But I can't figure out how he can breathe or type , at the same time ....
directfiesta is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 07-02-2008, 07:11 PM   #8
BV
wtf
 
BV's Avatar
 
Industry Role:
Join Date: Sep 2001
Location: Bikini State, FL USA
Posts: 10,914
Quote:
Originally Posted by jact View Post
We use Proxy Pass, and we generally have 10-20 users blocked at all times for password violations. Not the same people mind you, the quantity just seems to stay constant even after we resolve their sharing violation. I would prefer if it would do a password reset and send it to the customer's email but I guess blocking to an upsell page is good too.
I have a custom written addon for my proxypass that does that, user gets a new password once he trys to log in, gets one of those forms to enter characters to prove he is a real person, then bam he gets a new password.
BV is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 07-02-2008, 07:12 PM   #9
jact
Confirmed User
 
Join Date: Sep 2002
Location: Oakville, Canada
Posts: 9,134
Quote:
Originally Posted by BV View Post
I have a custom written addon for my proxypass that does that, user gets a new password once he trys to log in, gets one of those forms to enter characters to prove he is a real person, then bam he gets a new password.
That sounds slick, great idea.
__________________
Free agent
jact is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 07-02-2008, 08:46 PM   #10
Socks
Confirmed User
 
Industry Role:
Join Date: May 2002
Location: Toronto
Posts: 8,475
Quote:
Originally Posted by Shap View Post
The thieves are joining the site and paying for it and then stealing. Tough to stop that

You get my email about tomorrow night?
Yeap! My russian mail order bride is pressing my tuxedo as I type this. Immediately after she will be preparing my special cologne from scratch - secret recipe.
Socks is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Post New Thread Reply
Go Back   GoFuckYourself.com - Adult Webmaster Forum > >

Bookmarks
Thread Tools



Advertising inquiries - marketing at gfy dot com

Contact Admin - Advertise - GFY Rules - Top

©2000-, AI Media Network Inc



Powered by vBulletin
Copyright © 2000- Jelsoft Enterprises Limited.