Ed Leafe wrote: > On Jul 7, 2007, at 10:29 AM, johnf wrote: > >> I'm seeing lots of postings about 'paint' it looks like it is from >> the tracker >> and they look like they are coming from me. They are not! It >> looks like >> someone has hacked the site. > > It just looks like spammers have found the site. This happened to > the Dabo Wiki, and the original Dabo Issue Tracker, and now it's > happened here. The solution is to require authorization to post > anything; I'm sure Paul will take care of that when he returns.
Apparently, it was a good thing that the main dabo trac site crashed, because it prevented the spamming from happening there. I've removed TICKET_MODIFY from anonymous[1], and trained the spam filters that all those comments were spam. I'll get the tickets restored and spam comments removed today. I'm still going to resist requiring authentication to create new tickets, or post comments to tickets, however, as I believe it is an impediment to open collaboration. Of course, if it gets out of hand, I'll be forced to close it down, but this is only the second incident in months. Unfortunate timing, however... [1] Dj, this will also make it impossible for non-authenticated users to close a ticket, as it appears happened to you. Go ahead and log in and re-open that ticket, which we can assume happened as a precursor to the spamming events. -- pkm ~ http://paulmcnett.com _______________________________________________ Post Messages to: [email protected] Subscription Maintenance: http://leafe.com/mailman/listinfo/dabo-dev Searchable Archives: http://leafe.com/archives/search/dabo-dev This message: http://leafe.com/archives/byMID/dabo-dev/[EMAIL PROTECTED]
