<?xml version="1.0" encoding="UTF-8"?><!-- generator="wordpress/2.0.5" -->
<rss version="2.0" 
	xmlns:content="http://purl.org/rss/1.0/modules/content/">
<channel>
	<title>Comments on: The Death of CAPTCHA</title>
	<link>http://www.terminally-incoherent.com/blog/2008/07/01/the-death-of-captcha/</link>
	<description>Utterly random, incoherent and disjointed rants and ramblings...</description>
	<pubDate>Sat, 10 Jan 2009 03:31:34 +0000</pubDate>
	<generator>http://wordpress.org/?v=2.0.5</generator>

	<item>
		<title>by: astine</title>
		<link>http://www.terminally-incoherent.com/blog/2008/07/01/the-death-of-captcha/#comment-9529</link>
		<pubDate>Thu, 03 Jul 2008 15:20:26 +0000</pubDate>
		<guid>http://www.terminally-incoherent.com/blog/2008/07/01/the-death-of-captcha/#comment-9529</guid>
					<description>addendum: A CAPTCHA is like one of those 'club' things you can put on your steering wheel.. Sure, even an idiot can circumvent it, but given the choice of a car with one and a car without, a thief will go for the car without. If you add a CAPTCHA to your blog, then a spammer has to decide whether it is worth the effort to crack it. It is with Gmail, but ye yolkle forum with a CAPTCHA is likely to fair better, especially when their are SOOO many others without one.</description>
		<content:encoded><![CDATA[<p>addendum: A CAPTCHA is like one of those &#8216;club&#8217; things you can put on your steering wheel.. Sure, even an idiot can circumvent it, but given the choice of a car with one and a car without, a thief will go for the car without. If you add a CAPTCHA to your blog, then a spammer has to decide whether it is worth the effort to crack it. It is with Gmail, but ye yolkle forum with a CAPTCHA is likely to fair better, especially when their are SOOO many others without one.
</p>
]]></content:encoded>
				</item>
	<item>
		<title>by: astine</title>
		<link>http://www.terminally-incoherent.com/blog/2008/07/01/the-death-of-captcha/#comment-9528</link>
		<pubDate>Thu, 03 Jul 2008 15:13:27 +0000</pubDate>
		<guid>http://www.terminally-incoherent.com/blog/2008/07/01/the-death-of-captcha/#comment-9528</guid>
					<description>"but the point is that instead of just a stupid bot, now you have a bot and a human being working in unison."

It's a concern, but a mechanical Turk will always have a cost overhead that a pure bot won't be subject to. It needs enough to feed itself. So, there is definitely a limit on which targets can be attacked.</description>
		<content:encoded><![CDATA[<p>&#8220;but the point is that instead of just a stupid bot, now you have a bot and a human being working in unison.&#8221;</p>
<p>It&#8217;s a concern, but a mechanical Turk will always have a cost overhead that a pure bot won&#8217;t be subject to. It needs enough to feed itself. So, there is definitely a limit on which targets can be attacked.
</p>
]]></content:encoded>
				</item>
	<item>
		<title>by: Travis McCrea</title>
		<link>http://www.terminally-incoherent.com/blog/2008/07/01/the-death-of-captcha/#comment-9519</link>
		<pubDate>Wed, 02 Jul 2008 21:28:38 +0000</pubDate>
		<guid>http://www.terminally-incoherent.com/blog/2008/07/01/the-death-of-captcha/#comment-9519</guid>
					<description>I just think that bloggers will always stay one step ahead of spammers, and its obvious that we will because spammers are always looking out for the old systems, and are TRYING to catch up with our current ones... Captchas have been around for HOW long? They are just now being able to get a rough solve on a few SIMPLE ones?

Its not really about all bloggers getting together to find the perfect solution... its about all bloggers figuring out their OWN way making it virtually impossible for a bot to bot them all. 

Humans will always be able to help the bot but honestly in the time it takes for them to work with a bot... they can use an auto completer and just fill out the captchas themselfs.</description>
		<content:encoded><![CDATA[<p>I just think that bloggers will always stay one step ahead of spammers, and its obvious that we will because spammers are always looking out for the old systems, and are TRYING to catch up with our current ones&#8230; Captchas have been around for HOW long? They are just now being able to get a rough solve on a few SIMPLE ones?</p>
<p>Its not really about all bloggers getting together to find the perfect solution&#8230; its about all bloggers figuring out their OWN way making it virtually impossible for a bot to bot them all. </p>
<p>Humans will always be able to help the bot but honestly in the time it takes for them to work with a bot&#8230; they can use an auto completer and just fill out the captchas themselfs.
</p>
]]></content:encoded>
				</item>
	<item>
		<title>by: Luke Maciak</title>
		<link>http://www.terminally-incoherent.com/blog/2008/07/01/the-death-of-captcha/#comment-9513</link>
		<pubDate>Wed, 02 Jul 2008 12:59:24 +0000</pubDate>
		<guid>http://www.terminally-incoherent.com/blog/2008/07/01/the-death-of-captcha/#comment-9513</guid>
					<description>&lt;strong&gt;@Travis&lt;/strong&gt; - but the point is that instead of just a stupid bot, now you have a bot and a human being working in unison. The human passes the test by not filling out the right field, and the bot injects the payload.

You can block the IP, and it will probably work on a smaller scale, but then they might proxy their requests through a large botnet and having each one come from a different IP.

But yeah, small blogs have the advantage of not being large targets. But if you are indexed by Google or other search engines, then the bots can find you via random searches.</description>
		<content:encoded><![CDATA[<p><strong>@Travis</strong> - but the point is that instead of just a stupid bot, now you have a bot and a human being working in unison. The human passes the test by not filling out the right field, and the bot injects the payload.</p>
<p>You can block the IP, and it will probably work on a smaller scale, but then they might proxy their requests through a large botnet and having each one come from a different IP.</p>
<p>But yeah, small blogs have the advantage of not being large targets. But if you are indexed by Google or other search engines, then the bots can find you via random searches.
</p>
]]></content:encoded>
				</item>
	<item>
		<title>by: Travis McCrea</title>
		<link>http://www.terminally-incoherent.com/blog/2008/07/01/the-death-of-captcha/#comment-9510</link>
		<pubDate>Wed, 02 Jul 2008 07:25:28 +0000</pubDate>
		<guid>http://www.terminally-incoherent.com/blog/2008/07/01/the-death-of-captcha/#comment-9510</guid>
					<description>I am kinda missing the teli-marketers :(

Really though, I think bloggers will always be one step a head of spammers (the bloggers that need the protection at least) captchas are really now only becomming an issue in Browser Based Games and Social Networking Sites due to their vounrablility to bots... 
Simple methods of avoiding spam on any joe blow blog will work because to be honest... not enough people care that travismccrea.com even exists for them to bother with it. 

And they know if they develop spam ware for a certain website in particular they are going to get IP blocked and their time was useless... spammers more key in on fully non protected blogs. 

Really, if it becomes an issue... just use a honeypot with the blank field (thats what I was using for the longest time) which will change the titles from Name Mail URL and Body to 342938479283749823794872394 d0350we989287439879243784 3490872948792384792387498 and 219834923857984732987239dfd3893 and then one extra one to throw the bot off because if it fills it out it will be sent back (it would be hidden in a "display: none;" what I also did for screen readers is put FFF text saying "this is a blank feild for spammers, please do not fill anything in it"</description>
		<content:encoded><![CDATA[<p>I am kinda missing the teli-marketers <img src="http://www.terminally-incoherent.com/blog/wp-includes/images/smilies/icon_sad.gif" alt="(" class="wp-smiley" /> </p>
<p>Really though, I think bloggers will always be one step a head of spammers (the bloggers that need the protection at least) captchas are really now only becomming an issue in Browser Based Games and Social Networking Sites due to their vounrablility to bots&#8230;<br />
Simple methods of avoiding spam on any joe blow blog will work because to be honest&#8230; not enough people care that travismccrea.com even exists for them to bother with it. </p>
<p>And they know if they develop spam ware for a certain website in particular they are going to get IP blocked and their time was useless&#8230; spammers more key in on fully non protected blogs. </p>
<p>Really, if it becomes an issue&#8230; just use a honeypot with the blank field (thats what I was using for the longest time) which will change the titles from Name Mail URL and Body to 342938479283749823794872394 d0350we989287439879243784 3490872948792384792387498 and 219834923857984732987239dfd3893 and then one extra one to throw the bot off because if it fills it out it will be sent back (it would be hidden in a &#8220;display: none;&#8221; what I also did for screen readers is put FFF text saying &#8220;this is a blank feild for spammers, please do not fill anything in it&#8221;
</p>
]]></content:encoded>
				</item>
	<item>
		<title>by: Luke Maciak</title>
		<link>http://www.terminally-incoherent.com/blog/2008/07/01/the-death-of-captcha/#comment-9509</link>
		<pubDate>Wed, 02 Jul 2008 04:21:15 +0000</pubDate>
		<guid>http://www.terminally-incoherent.com/blog/2008/07/01/the-death-of-captcha/#comment-9509</guid>
					<description>&lt;strong&gt;@Nick&lt;/strong&gt; - LOL good one! I saw it before, but it's still funny!

&lt;strong&gt;@astine&lt;/strong&gt; - oh no! What have I done! I created a monster!</description>
		<content:encoded><![CDATA[<p><strong>@Nick</strong> - LOL good one! I saw it before, but it&#8217;s still funny!</p>
<p><strong>@astine</strong> - oh no! What have I done! I created a monster!
</p>
]]></content:encoded>
				</item>
	<item>
		<title>by: astine</title>
		<link>http://www.terminally-incoherent.com/blog/2008/07/01/the-death-of-captcha/#comment-9508</link>
		<pubDate>Wed, 02 Jul 2008 01:05:53 +0000</pubDate>
		<guid>http://www.terminally-incoherent.com/blog/2008/07/01/the-death-of-captcha/#comment-9508</guid>
					<description>&lt;blockquote&gt;So you buy one of these apps, then purchase a big ass package with ImageToText you can start building your brand new spam empire. All it takes is some cash - you can even be borderline retarded. It won’t slow you down.&lt;/blockquote&gt;

BWAHAHAHAHAHAHAHAHAHAAAAAA!

Soon my plan will be complete! Spam in every inbox, every comment log, inline of every blog! Soon everyone will be so pissed off at all the spam that they will simply log off of the Internet. Then, THEN, I will be the only person left online, leaving me free to do as I always wanted! Soon, my blog will have the most DIGGS!!!

HAHAHAHAHAHAHAHAHAAAAAAAAA!!!1!!!!11!!1!!!1!!!!1111!</description>
		<content:encoded><![CDATA[<blockquote><p>So you buy one of these apps, then purchase a big ass package with ImageToText you can start building your brand new spam empire. All it takes is some cash - you can even be borderline retarded. It won’t slow you down.</p>
</blockquote>
<p>BWAHAHAHAHAHAHAHAHAHAAAAAA!</p>
<p>Soon my plan will be complete! Spam in every inbox, every comment log, inline of every blog! Soon everyone will be so pissed off at all the spam that they will simply log off of the Internet. Then, THEN, I will be the only person left online, leaving me free to do as I always wanted! Soon, my blog will have the most DIGGS!!!</p>
<p>HAHAHAHAHAHAHAHAHAAAAAAAAA!!!1!!!!11!!1!!!1!!!!1111!
</p>
]]></content:encoded>
				</item>
	<item>
		<title>by: Nick</title>
		<link>http://www.terminally-incoherent.com/blog/2008/07/01/the-death-of-captcha/#comment-9507</link>
		<pubDate>Tue, 01 Jul 2008 21:11:11 +0000</pubDate>
		<guid>http://www.terminally-incoherent.com/blog/2008/07/01/the-death-of-captcha/#comment-9507</guid>
					<description>&lt;blockquote&gt;
That, or the anti-spam questions serve a dual purpose, keeping both bots and idiots off of my internets… ask a complex question, only smart people know the answer, everybody wins. 
&lt;/blockquote&gt;

People are on it as we, uh, post. &lt;a href="http://stupidfilter.org/main/" rel="nofollow"&gt;Stupid Filter&lt;/a&gt;</description>
		<content:encoded><![CDATA[<blockquote><p>
That, or the anti-spam questions serve a dual purpose, keeping both bots and idiots off of my internets… ask a complex question, only smart people know the answer, everybody wins.
</p>
</blockquote>
<p>People are on it as we, uh, post. <a href="http://stupidfilter.org/main/" rel="nofollow">Stupid Filter</a>
</p>
]]></content:encoded>
				</item>
	<item>
		<title>by: Luke Maciak</title>
		<link>http://www.terminally-incoherent.com/blog/2008/07/01/the-death-of-captcha/#comment-9506</link>
		<pubDate>Tue, 01 Jul 2008 17:50:32 +0000</pubDate>
		<guid>http://www.terminally-incoherent.com/blog/2008/07/01/the-death-of-captcha/#comment-9506</guid>
					<description>[quote comment="9500"]I hate to be a jerk, (No, wait. I love that. Never mind.) but it's not "touring test."  http://en.wikipedia.org/wiki/Turing_test[/quote]

:ops: Oops! Damn spellcheck! I fixed it now. Thanks!

[quote comment="9501"]That, or the anti-spam questions serve a dual purpose, keeping both bots and idiots off of my internets... ask a complex question, only smart people know the answer, everybody wins.[/quote]

This would mean that MySpace would go out of business as 90% of their user base would find themselves locked out. :P Which, is not such a band thing actually.</description>
		<content:encoded><![CDATA[<p><span style="padding-left: 10px;"><strong>John Mark Schofield</strong> said:</span></p>
<blockquote cite="http://www.terminally-incoherent.com/blog/2008/07/01/the-death-of-captcha/#comment-9500"><p>
I hate to be a jerk, (No, wait. I love that. Never mind.) but it&#8217;s not &#8220;touring test.&#8221;  <a href="http://en.wikipedia.org/wiki/Turing_test" rel="nofollow">http://en.wikipedia.org/wiki/Turing_test</a></p>
</blockquote>
<p>:ops: Oops! Damn spellcheck! I fixed it now. Thanks!</p>
<p><span style="padding-left: 10px;"><strong>Matt`</strong> said:</span></p>
<blockquote cite="http://www.terminally-incoherent.com/blog/2008/07/01/the-death-of-captcha/#comment-9501"><p>
That, or the anti-spam questions serve a dual purpose, keeping both bots and idiots off of my internets&#8230; ask a complex question, only smart people know the answer, everybody wins.</p>
</blockquote>
<p>This would mean that MySpace would go out of business as 90% of their user base would find themselves locked out. <img src="http://www.terminally-incoherent.com/blog/wp-includes/images/smilies/icon_razz.gif" alt="P" class="wp-smiley" />  Which, is not such a band thing actually.
</p>
]]></content:encoded>
				</item>
	<item>
		<title>by: Matt`</title>
		<link>http://www.terminally-incoherent.com/blog/2008/07/01/the-death-of-captcha/#comment-9501</link>
		<pubDate>Tue, 01 Jul 2008 15:59:44 +0000</pubDate>
		<guid>http://www.terminally-incoherent.com/blog/2008/07/01/the-death-of-captcha/#comment-9501</guid>
					<description>Here's hoping the arms race eventually develops a true AI  :mrgreen:

That, or the anti-spam questions serve a dual purpose, keeping both bots and idiots off of my internets... ask a complex question, only smart people know the answer, everybody wins.</description>
		<content:encoded><![CDATA[<p>Here&#8217;s hoping the arms race eventually develops a true AI   <img src="http://www.terminally-incoherent.com/blog/wp-includes/images/smilies/icon_mrgreen.gif" alt="mrgreen" class="wp-smiley" /> </p>
<p>That, or the anti-spam questions serve a dual purpose, keeping both bots and idiots off of my internets&#8230; ask a complex question, only smart people know the answer, everybody wins.
</p>
]]></content:encoded>
				</item>
</channel>
</rss>

<!-- Dynamic Page Served (once) in 0.835 seconds -->
