<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: no more captcha</title>
	<atom:link href="http://www.gotwoot.net/2007/08/12/no-more-captcha/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.gotwoot.net/2007/08/12/no-more-captcha/</link>
	<description>Just another WordPress weblog</description>
	<lastBuildDate>Sat, 31 Jul 2010 11:55:14 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.0.1</generator>
	<item>
		<title>By: complich8</title>
		<link>http://www.gotwoot.net/2007/08/12/no-more-captcha/comment-page-1/#comment-4269</link>
		<dc:creator>complich8</dc:creator>
		<pubDate>Tue, 14 Aug 2007 21:57:01 +0000</pubDate>
		<guid isPermaLink="false">http://www.gotwoot.net/?p=143#comment-4269</guid>
		<description>the real idea behind hashcash is both &quot;make the computer perform some computation&quot; and &quot;make sure the poster has a fully-functional javascript&quot; under the assumption that most bots don&#039;t.&lt;br /&gt;&lt;br /&gt;

Unfortunately, while most bots still don&#039;t, some do, meaning some spam still gets through.  Those that hook a javascript engine to post spam are going pretty far to do it, so having to compute a half a second or so worth of javascript isn&#039;t a big hit to them.  They&#039;ve got a couple thousand bots in a botnet to do it anyway...&lt;br /&gt;&lt;br /&gt;

Since making that change, 4 spam messages have made it past hashcash.  Hashcash plus akismet has caught all of them, but mopsi&#039;s message got flagged as spam as well, which is somewhat unacceptable too.  However, I&#039;ll still keep this combination, because it results in an acceptable level of spam hitting akismet, to the point that I can actually do some vetting from time to time without having to dig through hundreds of spams per month to do it.  Akismet alone was churning through in the neighborhood of 50 to 100 spams per day when I switched to the captcha, and with hashcash and akismet, it&#039;s down to like 4 per day.  So that&#039;s pretty tolerable ...</description>
		<content:encoded><![CDATA[<p>the real idea behind hashcash is both &#8220;make the computer perform some computation&#8221; and &#8220;make sure the poster has a fully-functional javascript&#8221; under the assumption that most bots don&#8217;t.</p>
<p>Unfortunately, while most bots still don&#8217;t, some do, meaning some spam still gets through.  Those that hook a javascript engine to post spam are going pretty far to do it, so having to compute a half a second or so worth of javascript isn&#8217;t a big hit to them.  They&#8217;ve got a couple thousand bots in a botnet to do it anyway&#8230;</p>
<p>Since making that change, 4 spam messages have made it past hashcash.  Hashcash plus akismet has caught all of them, but mopsi&#8217;s message got flagged as spam as well, which is somewhat unacceptable too.  However, I&#8217;ll still keep this combination, because it results in an acceptable level of spam hitting akismet, to the point that I can actually do some vetting from time to time without having to dig through hundreds of spams per month to do it.  Akismet alone was churning through in the neighborhood of 50 to 100 spams per day when I switched to the captcha, and with hashcash and akismet, it&#8217;s down to like 4 per day.  So that&#8217;s pretty tolerable &#8230;</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: mopsi</title>
		<link>http://www.gotwoot.net/2007/08/12/no-more-captcha/comment-page-1/#comment-4263</link>
		<dc:creator>mopsi</dc:creator>
		<pubDate>Mon, 13 Aug 2007 19:21:51 +0000</pubDate>
		<guid isPermaLink="false">http://www.gotwoot.net/?p=143#comment-4263</guid>
		<description>GomuNingen,

the problem is that this method is no 100% proof (captchas aren&#039;t as well but with those hard to read images it came near...) since it doesn&#039;t prevent a robot to post but it just slows them down.

It works by requiring the user&#039;s machine to do some computation which takes 0.5 seconds per comment or so. This slight delay means nothing to someone posting one comment. But it slows down the spammer robot that wants to post thousand of comments.

But if the spammer doesn&#039;t care for the slow-down he still can do automated spamming.


I still prefer this method because as long as there are enough unsecured blogs the spammers will go for those while the legit user gets rid of the need to enter the captcha.</description>
		<content:encoded><![CDATA[<p>GomuNingen,</p>
<p>the problem is that this method is no 100% proof (captchas aren&#8217;t as well but with those hard to read images it came near&#8230;) since it doesn&#8217;t prevent a robot to post but it just slows them down.</p>
<p>It works by requiring the user&#8217;s machine to do some computation which takes 0.5 seconds per comment or so. This slight delay means nothing to someone posting one comment. But it slows down the spammer robot that wants to post thousand of comments.</p>
<p>But if the spammer doesn&#8217;t care for the slow-down he still can do automated spamming.</p>
<p>I still prefer this method because as long as there are enough unsecured blogs the spammers will go for those while the legit user gets rid of the need to enter the captcha.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: TGEN</title>
		<link>http://www.gotwoot.net/2007/08/12/no-more-captcha/comment-page-1/#comment-4262</link>
		<dc:creator>TGEN</dc:creator>
		<pubDate>Mon, 13 Aug 2007 15:59:30 +0000</pubDate>
		<guid isPermaLink="false">http://www.gotwoot.net/?p=143#comment-4262</guid>
		<description>Props on dropping your (dreadful, might I add) CAPTCHA implementation.</description>
		<content:encoded><![CDATA[<p>Props on dropping your (dreadful, might I add) CAPTCHA implementation.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Bread-sama</title>
		<link>http://www.gotwoot.net/2007/08/12/no-more-captcha/comment-page-1/#comment-4255</link>
		<dc:creator>Bread-sama</dc:creator>
		<pubDate>Mon, 13 Aug 2007 05:46:04 +0000</pubDate>
		<guid isPermaLink="false">http://www.gotwoot.net/?p=143#comment-4255</guid>
		<description>rofl </description>
		<content:encoded><![CDATA[<p>rofl</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: complich8</title>
		<link>http://www.gotwoot.net/2007/08/12/no-more-captcha/comment-page-1/#comment-4251</link>
		<dc:creator>complich8</dc:creator>
		<pubDate>Mon, 13 Aug 2007 02:13:09 +0000</pubDate>
		<guid isPermaLink="false">http://www.gotwoot.net/?p=143#comment-4251</guid>
		<description>Bread: that&#039;s because you&#039;re logged in, same as me. 

jerk &gt;_&lt;</description>
		<content:encoded><![CDATA[<p>Bread: that&#8217;s because you&#8217;re logged in, same as me. </p>
<p>jerk >_<</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Maye</title>
		<link>http://www.gotwoot.net/2007/08/12/no-more-captcha/comment-page-1/#comment-4250</link>
		<dc:creator>Maye</dc:creator>
		<pubDate>Mon, 13 Aug 2007 01:04:19 +0000</pubDate>
		<guid isPermaLink="false">http://www.gotwoot.net/?p=143#comment-4250</guid>
		<description>Yeah, This is much much better ^^</description>
		<content:encoded><![CDATA[<p>Yeah, This is much much better ^^</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Bread-sama</title>
		<link>http://www.gotwoot.net/2007/08/12/no-more-captcha/comment-page-1/#comment-4247</link>
		<dc:creator>Bread-sama</dc:creator>
		<pubDate>Sun, 12 Aug 2007 23:46:08 +0000</pubDate>
		<guid isPermaLink="false">http://www.gotwoot.net/?p=143#comment-4247</guid>
		<description>looks the same for me</description>
		<content:encoded><![CDATA[<p>looks the same for me</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: complich8</title>
		<link>http://www.gotwoot.net/2007/08/12/no-more-captcha/comment-page-1/#comment-4244</link>
		<dc:creator>complich8</dc:creator>
		<pubDate>Sun, 12 Aug 2007 20:41:46 +0000</pubDate>
		<guid isPermaLink="false">http://www.gotwoot.net/?p=143#comment-4244</guid>
		<description>I found out why!&lt;br /&gt;&lt;br /&gt;

Apparently there are some spambots that actually implement javascript... I&#039;ve already had to spam-flag a comment or two.&lt;br /&gt;&lt;br /&gt;

otoh, I don&#039;t want to go back to captchas again, &#039;cause people hate them and they&#039;re buggy.&lt;br /&gt;&lt;br /&gt;

I originally went to captcha because akismet was giving false positives, so that&#039;s not really a great answer to go back to either.  And since I don&#039;t want to babysit the place forever, a moderation queue is probably not so great either.&lt;br /&gt;&lt;br /&gt;

hmm....&lt;br /&gt;</description>
		<content:encoded><![CDATA[<p>I found out why!</p>
<p>Apparently there are some spambots that actually implement javascript&#8230; I&#8217;ve already had to spam-flag a comment or two.</p>
<p>otoh, I don&#8217;t want to go back to captchas again, &#8217;cause people hate them and they&#8217;re buggy.</p>
<p>I originally went to captcha because akismet was giving false positives, so that&#8217;s not really a great answer to go back to either.  And since I don&#8217;t want to babysit the place forever, a moderation queue is probably not so great either.</p>
<p>hmm&#8230;.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: GomuNingen</title>
		<link>http://www.gotwoot.net/2007/08/12/no-more-captcha/comment-page-1/#comment-4243</link>
		<dc:creator>GomuNingen</dc:creator>
		<pubDate>Sun, 12 Aug 2007 19:59:42 +0000</pubDate>
		<guid isPermaLink="false">http://www.gotwoot.net/?p=143#comment-4243</guid>
		<description>I don&#039;t know why almost no one uses this.  It&#039;s much easier than trying to decipher the message! :razz:</description>
		<content:encoded><![CDATA[<p>I don&#8217;t know why almost no one uses this.  It&#8217;s much easier than trying to decipher the message! <img src='http://www.gotwoot.net/wordpress/wp-includes/images/smilies/icon_razz.gif' alt=':razz:' class='wp-smiley' /> </p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Kuncoss</title>
		<link>http://www.gotwoot.net/2007/08/12/no-more-captcha/comment-page-1/#comment-4238</link>
		<dc:creator>Kuncoss</dc:creator>
		<pubDate>Sun, 12 Aug 2007 16:50:54 +0000</pubDate>
		<guid isPermaLink="false">http://www.gotwoot.net/?p=143#comment-4238</guid>
		<description>This seems to work so much better! (I had trouble reading almost every images that had the posting code)
I&#039;m guessing that this is the same sort as they use on Youtube maybe? :smile:
Anyways, great to have easier comment function!</description>
		<content:encoded><![CDATA[<p>This seems to work so much better! (I had trouble reading almost every images that had the posting code)<br />
I&#8217;m guessing that this is the same sort as they use on Youtube maybe? <img src='http://www.gotwoot.net/wordpress/wp-includes/images/smilies/icon_smile.gif' alt=':smile:' class='wp-smiley' /><br />
Anyways, great to have easier comment function!</p>
]]></content:encoded>
	</item>
</channel>
</rss>
