On Fri, Mar 11, 2011 at 6:35 PM, Stephan Beal <step...@wanderinghorse.net>wrote:

> i just wanted to forward a warning someone just sent me. It seems that
> someone has found a way to crack at least one of my fossil repos and post
> garbage links in the wiki. i don't have any details about how/when/etc., but
> if i find something interesting which might be of use to other fossilers
> i'll post the details...
>

they apparently spammed my tickets full, too...

http://fossil.wanderinghorse.net/repos/cson/index.cgi/rptview?rn=1

Every one of those is spam.

To be clear: i'm not calling this a fossil bug, i just wanted to make others
users aware that someone out there now has the ability to spam a fossil
repo. The fact that most of the tickets seem to have randomly-selected
values from some fields with drop-down menus suggests that the bot is
relatively sophisticated.

Can anyone suggest a way i can nuke the tickets from my db (i'm not afraid
of using SQL here) which won't ruin the integrity of the repo?

-- 
----- stephan beal
http://wanderinghorse.net/home/stephan/
_______________________________________________
fossil-users mailing list
fossil-users@lists.fossil-scm.org
http://lists.fossil-scm.org:8080/cgi-bin/mailman/listinfo/fossil-users

Reply via email to