<?xml version="1.0" encoding="utf-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	>
<channel>
	<title>Comments on: Poisoning the well</title>
	<atom:link href="http://dougal.gunters.org/blog/2005/12/06/poisoning-the-well/feed" rel="self" type="application/rss+xml" />
	<link>http://dougal.gunters.org/blog/2005/12/06/poisoning-the-well</link>
	<description>Random musings of a Southern geek</description>
	<pubDate>Thu, 04 Dec 2008 02:20:33 +0000</pubDate>
	<generator>http://wordpress.org/?v=2.7-RC1-10026</generator>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
		<item>
		<title>By: Pariah S. Burke</title>
		<link>http://dougal.gunters.org/blog/2005/12/06/poisoning-the-well/comment-page-1#comment-34615</link>
		<dc:creator>Pariah S. Burke</dc:creator>
		<pubDate>Thu, 22 Dec 2005 01:35:51 +0000</pubDate>
		<guid isPermaLink="false">http://dougal.gunters.org/?p=689#comment-34615</guid>
		<description>I just saw your post about this. I wrote one the other day, dubbing the practice "Whitelist Spamming."

http://www.iampariah.com/blog/2005/12/whitelist-spam-attacks-threaten-blogs-and-email/

The real problem comes into play when you think about the big picture. It's not just about whether spam gets to YOUR blog, it's about whether your domain gets blacklisted by other blogs and e-mail servers.</description>
		<content:encoded><![CDATA[<p>I just saw your post about this. I wrote one the other day, dubbing the practice &#8220;Whitelist Spamming.&#8221;</p>
<p><a href="http://www.iampariah.com/blog/2005/12/whitelist-spam-attacks-threaten-blogs-and-email/" >http://www.iampariah.com/blog/2005/12/whitelist-spam-attacks-threaten-blogs-and-email/</a></p>
<p>The real problem comes into play when you think about the big picture. It&#8217;s not just about whether spam gets to YOUR blog, it&#8217;s about whether your domain gets blacklisted by other blogs and e-mail servers.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: ShadowLife &#187; Blog Archive &#187; Comment Spam</title>
		<link>http://dougal.gunters.org/blog/2005/12/06/poisoning-the-well/comment-page-1#comment-34614</link>
		<dc:creator>ShadowLife &#187; Blog Archive &#187; Comment Spam</dc:creator>
		<pubDate>Thu, 22 Dec 2005 01:06:25 +0000</pubDate>
		<guid isPermaLink="false">http://dougal.gunters.org/?p=689#comment-34614</guid>
		<description>[...] Edit: a lot of these comments seem to be &#8216;poison-the-well style comments, which makes their existance all the more pointless. [...]</description>
		<content:encoded><![CDATA[<p>[...] Edit: a lot of these comments seem to be &#8216;poison-the-well style comments, which makes their existance all the more pointless. [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Ross Easton</title>
		<link>http://dougal.gunters.org/blog/2005/12/06/poisoning-the-well/comment-page-1#comment-34451</link>
		<dc:creator>Ross Easton</dc:creator>
		<pubDate>Mon, 19 Dec 2005 00:14:28 +0000</pubDate>
		<guid isPermaLink="false">http://dougal.gunters.org/?p=689#comment-34451</guid>
		<description>Getting a load of the poison too! Interesting.</description>
		<content:encoded><![CDATA[<p>Getting a load of the poison too! Interesting.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: James (aka MacManX)</title>
		<link>http://dougal.gunters.org/blog/2005/12/06/poisoning-the-well/comment-page-1#comment-34411</link>
		<dc:creator>James (aka MacManX)</dc:creator>
		<pubDate>Sat, 17 Dec 2005 20:07:16 +0000</pubDate>
		<guid isPermaLink="false">http://dougal.gunters.org/?p=689#comment-34411</guid>
		<description>I remember when I first got caught up in a "poisoning the well" attempt.  I was running Spam Karma v1 and some clever spammer began flooding me with spam comments that linked to ".com".  Sure enough, Spam Karma eventually added ".com" to its blacklist, and it wasn't long before every incoming comment was eaten by Spam Karma.  I had to flush my entire Spam Karma blacklist just to get rid of that one false entry.  So, if you run an "intelligent" spam filter, such as Spam Karma and Akismet, keep a very close eye on your logs.</description>
		<content:encoded><![CDATA[<p>I remember when I first got caught up in a &#8220;poisoning the well&#8221; attempt.  I was running Spam Karma v1 and some clever spammer began flooding me with spam comments that linked to &#8220;.com&#8221;.  Sure enough, Spam Karma eventually added &#8220;.com&#8221; to its blacklist, and it wasn&#8217;t long before every incoming comment was eaten by Spam Karma.  I had to flush my entire Spam Karma blacklist just to get rid of that one false entry.  So, if you run an &#8220;intelligent&#8221; spam filter, such as Spam Karma and Akismet, keep a very close eye on your logs.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: What makes you happy ? &#187; Gatekeeper in.</title>
		<link>http://dougal.gunters.org/blog/2005/12/06/poisoning-the-well/comment-page-1#comment-34206</link>
		<dc:creator>What makes you happy ? &#187; Gatekeeper in.</dc:creator>
		<pubDate>Wed, 14 Dec 2005 15:20:06 +0000</pubDate>
		<guid isPermaLink="false">http://dougal.gunters.org/?p=689#comment-34206</guid>
		<description>[...] When I first installed Spam Karma 2, it killed all the spam. Great code, great protection and it&#8217;s something I still use. What SK2 didn&#8217;t protect against though was spam flooding. A spammer could hit your site with numerous requests and each would be processed. Not good. When Bad-Behaviour was released it took the place of SK2 in it&#8217;s spam killing by preventing them getting close enough to do the damage. It stopped the spam flooding. SK2 stayed in the background twiddling it&#8217;s thumbs. SK2 literally was redundant but it stayed in place. Increasingly though, SK2 is working because more and more spam is evading BB. I am now clearing between 10 and 20 spams a day using SK2 and I&#8217;m even having spam get through (this is comment spam, not pingback / trackback) to the blog. The spam criteria is being poisoned too. The full code for both the above plugins is available to download, check, test against for the spammers though isn&#8217;t it ? They have a financial impetus to find holes and by my measure, they are doing that. So, to do something about it. One option is Aksimet from Matt. I have an API key, I had it installed at one point but I have doubts about my blog relying on a remote server outside of my hosting to function correctly. There&#8217;s only so much spam that can be held back before a server falls over. Part of the problem with this - from where I stand - is that as good as Matt&#8217;s work is, who cares enough to support it financially ? Looking at last year&#8217;s poker flood - the companies like it, the stock market likes it, the shops love it. It&#8217;s big business pushing this crap so it would take a business just as big to fight back wouldn&#8217;t it ? And there is no big business, just lots of little blogs, all with their own tools, all trying to make their target look less attractive than the next blog program &#8230; So for now, Akismet is not an option (though having distributed servers would be much better). But one option - which I have always quite liked when using it on other&#8217;s blogs - is Eric Meyer&#8217;s Gatekeeper. I pose a range of quetions, you answer them. So it is now installed and ready for you if you choose to click the comments link. I&#8217;ll admit I have no idea how spammers attack the code and no doubt someone will pop up and tell me that they skip where I&#8217;m protecting and that this is no good etc etc but hey - all you need to do IF you want a comment is answer a question. And because I like comments, it&#8217;s not even going to be a surreal question - just a boringly normal type job. And the spam ? I&#8217;ll let you know in a week.      Â¤ Read (1) [...]</description>
		<content:encoded><![CDATA[<p>[...] When I first installed Spam Karma 2, it killed all the spam. Great code, great protection and it&#8217;s something I still use. What SK2 didn&#8217;t protect against though was spam flooding. A spammer could hit your site with numerous requests and each would be processed. Not good. When Bad-Behaviour was released it took the place of SK2 in it&#8217;s spam killing by preventing them getting close enough to do the damage. It stopped the spam flooding. SK2 stayed in the background twiddling it&#8217;s thumbs. SK2 literally was redundant but it stayed in place. Increasingly though, SK2 is working because more and more spam is evading BB. I am now clearing between 10 and 20 spams a day using SK2 and I&#8217;m even having spam get through (this is comment spam, not pingback / trackback) to the blog. The spam criteria is being poisoned too. The full code for both the above plugins is available to download, check, test against for the spammers though isn&#8217;t it ? They have a financial impetus to find holes and by my measure, they are doing that. So, to do something about it. One option is Aksimet from Matt. I have an <acronym title='Application Interface'><span class='caps'>API</span></acronym> key, I had it installed at one point but I have doubts about my blog relying on a remote server outside of my hosting to function correctly. There&#8217;s only so much spam that can be held back before a server falls over. Part of the problem with this - from where I stand - is that as good as Matt&#8217;s work is, who cares enough to support it financially ? Looking at last year&#8217;s poker flood - the companies like it, the stock market likes it, the shops love it. It&#8217;s big business pushing this crap so it would take a business just as big to fight back wouldn&#8217;t it ? And there is no big business, just lots of little blogs, all with their own tools, all trying to make their target look less attractive than the next blog program &#8230; So for now, Akismet is not an option (though having distributed servers would be much better). But one option - which I have always quite liked when using it on other&#8217;s blogs - is Eric Meyer&#8217;s Gatekeeper. I pose a range of quetions, you answer them. So it is now installed and ready for you if you choose to click the comments link. I&#8217;ll admit I have no idea how spammers attack the code and no doubt someone will pop up and tell me that they skip where I&#8217;m protecting and that this is no good etc etc but hey - all you need to do IF you want a comment is answer a question. And because I like comments, it&#8217;s not even going to be a surreal question - just a boringly normal type job. And the spam ? I&#8217;ll let you know in a week.      Â¤ Read (1) [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: alexking.org: Blog &#62; Around the web</title>
		<link>http://dougal.gunters.org/blog/2005/12/06/poisoning-the-well/comment-page-1#comment-34041</link>
		<dc:creator>alexking.org: Blog &#62; Around the web</dc:creator>
		<pubDate>Sun, 11 Dec 2005 16:41:34 +0000</pubDate>
		<guid isPermaLink="false">http://dougal.gunters.org/?p=689#comment-34041</guid>
		<description>[...] Poisoning the well - I&#8217;m getting (and ignoring) these too. [...]</description>
		<content:encoded><![CDATA[<p>[...] Poisoning the well - I&#8217;m getting (and ignoring) these too. [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Mohsin</title>
		<link>http://dougal.gunters.org/blog/2005/12/06/poisoning-the-well/comment-page-1#comment-33928</link>
		<dc:creator>Mohsin</dc:creator>
		<pubDate>Fri, 09 Dec 2005 16:05:08 +0000</pubDate>
		<guid isPermaLink="false">http://dougal.gunters.org/?p=689#comment-33928</guid>
		<description>Hey Dear!
I am new to Wordpress, i just started a week ago
but not sure how to use this blog, when i see my
blog's left bar, with links called somthing blogrolls
and one of them i clicked and now i am here, but here i 
was seeing very bad aspect of online marketing that is Spammers
but hope you make them lesson!, i am here to as you how to use it
means my blog www.acmeaims.com/daily i am also not familiar with
terms used there,,blogroll,ping,rss,,,i hope you will help me in this
regard,,,,,wish you good luck!, from MOhsin Rasool MoreLee webmaster</description>
		<content:encoded><![CDATA[<p>Hey Dear!<br />
I am new to Wordpress, i just started a week ago<br />
but not sure how to use this blog, when i see my<br />
blog&#8217;s left bar, with links called somthing blogrolls<br />
and one of them i clicked and now i am here, but here i<br />
was seeing very bad aspect of online marketing that is Spammers<br />
but hope you make them lesson!, i am here to as you how to use it<br />
means my blog <a href="http://www.acmeaims.com/daily" >http://www.acmeaims.com/daily</a> i am also not familiar with<br />
terms used there,,blogroll,ping,rss,,,i hope you will help me in this<br />
regard,,,,,wish you good luck!, from MOhsin Rasool MoreLee webmaster</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Will&#8217;s Blog &#187; Blog Archive &#187; Akismet Rocks</title>
		<link>http://dougal.gunters.org/blog/2005/12/06/poisoning-the-well/comment-page-1#comment-33831</link>
		<dc:creator>Will&#8217;s Blog &#187; Blog Archive &#187; Akismet Rocks</dc:creator>
		<pubDate>Thu, 08 Dec 2005 05:04:00 +0000</pubDate>
		<guid isPermaLink="false">http://dougal.gunters.org/?p=689#comment-33831</guid>
		<description>[...] I finally decided to install it after reading lots of success stories in particular, this post by Dougal Campbell titled Poisoning the Well. The type of comments that he mentions are similar to the new batch of comment spam that I&#8217;ve noticed lately. These comment spams are becoming a little bit harder to tell apart from those written by people living in countries with really bad English. [...]</description>
		<content:encoded><![CDATA[<p>[...] I finally decided to install it after reading lots of success stories in particular, this post by Dougal Campbell titled Poisoning the Well. The type of comments that he mentions are similar to the new batch of comment spam that I&#8217;ve noticed lately. These comment spams are becoming a little bit harder to tell apart from those written by people living in countries with really bad English. [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Michael Cutler</title>
		<link>http://dougal.gunters.org/blog/2005/12/06/poisoning-the-well/comment-page-1#comment-33804</link>
		<dc:creator>Michael Cutler</dc:creator>
		<pubDate>Tue, 06 Dec 2005 23:51:30 +0000</pubDate>
		<guid isPermaLink="false">http://dougal.gunters.org/?p=689#comment-33804</guid>
		<description>I was also plagued by these style comments and &lt;a href='http://blog.lobstertechnology.com/2005/11/22/more-thoughts-on-comment-spam/' rel="nofollow"&gt;showed how wide the problem is&lt;/a&gt; in a post a few weeks ago. My initial solution was to block the offending User-Agents at Apache server level - a less than ideal solution.

A friend of mine wrote an interesting solution to the problem using secured time-based-tokens and I have incorporated it into this freshly baked &lt;a href='http://blog.lobstertechnology.com/2005/12/06/spamkit-plugin-for-wordpress/' rel="nofollow"&gt;SpamKit Plugin&lt;/a&gt; for Wordpress.

Maybe it can help?</description>
		<content:encoded><![CDATA[<p>I was also plagued by these style comments and <a href='http://blog.lobstertechnology.com/2005/11/22/more-thoughts-on-comment-spam/' >showed how wide the problem is</a> in a post a few weeks ago. My initial solution was to block the offending User-Agents at Apache server level - a less than ideal solution.</p>
<p>A friend of mine wrote an interesting solution to the problem using secured time-based-tokens and I have incorporated it into this freshly baked <a href='http://blog.lobstertechnology.com/2005/12/06/spamkit-plugin-for-wordpress/' >SpamKit Plugin</a> for Wordpress.</p>
<p>Maybe it can help?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Rick Beckman</title>
		<link>http://dougal.gunters.org/blog/2005/12/06/poisoning-the-well/comment-page-1#comment-33802</link>
		<dc:creator>Rick Beckman</dc:creator>
		<pubDate>Tue, 06 Dec 2005 21:51:10 +0000</pubDate>
		<guid isPermaLink="false">http://dougal.gunters.org/?p=689#comment-33802</guid>
		<description>So that's why I was getting spam pointing to websites I sometimes use! Akismet still caught 'em, however. :)</description>
		<content:encoded><![CDATA[<p>So that&#8217;s why I was getting spam pointing to websites I sometimes use! Akismet still caught &#8216;em, however. <img src='http://dougal.gunters.org/wordpress/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
]]></content:encoded>
	</item>
</channel>
</rss>
