Slashdot is Port Scanning Its Users
soylentnews.org
soylentnews.org
I'm just glad to see that a lot of GNAA and other crap has largely stopped.
Still see the Golden Girls spam posts, but, out of all the possible crap you could be clogging the internet up with, the Golden Girls aren't a bad way to go.
What got me upset was the fact that I respect users privacy, and to find out about this behaviour from a bug report notification pissed me off. In /code's defence, at that point, it was basically /., /.JP and Burrapuento as the last three slash sites on the internet so a lot of slashdot specific functionality has creped in over the years before the code drops stopped in 2009, with the documentation for independent sites being a bit stale.
EDIT: I've written a follow up on my SN journal: http://soylentnews.org/~NCommander/journal/277
IRC servers have been known to do this as well, from time to time, as bot mitigation.
Really, Slashcode is just unbelievably horrible. I ran it myself. It's stupidly fragile, you can break it by altering things in the interface and it stores its weblogs in the MySQL database.
I eventually moved everything to WordPress and stopped wanting to STAB MYSELF IN THE FACE REPEATEDLY whenever I wanted to make a post.
Slashcode is not my favourite CMS.
Can you explain this to me? this seems like exactly what wordpress does..?
Maybe it doesn't do that any more. BUT SOMEONE EVER THOUGHT THIS WAS A GOOD IDEA.
We've been discussing migrating over to PostgreSQL and rearchitecting the database to run on stored proceedures and views; almost all the DB calls are already abstracted in MySQL.pm, so this is relatively straight forward (if a bit tedious).
I believe the other site(s) would include the ruinator's other Taco acquisitions Sourceforge & Freecode. I could be wrong and often am.
That question was asked now ~10 years back. The answer was: to check if the submitter is using an random open proxy server from the net to bypass their IP filter.
From the code
# If we don't have an IP address, it can't be an open proxy.
And scanning commonly known proxy server ports. my $ports = $constants->{comments_portscan_ports} || '80 8080 8000 3128';Some users get a windows software firewall product. Those products have to persuade users that the money was well spent, so they log everything and sometimes alert too much. "WE PROTECTED YOU FROM 9,042 HOSTILE ATTEMPTS" sounds better than "it's just Internet noise. Ignore it."
I'm still interested, it's just not that interesting.
I agree that Slashdot's lost its way and cachet, but substance is hardly prominent across much of the Internet today.
Run opensource so you can pour through the code and trust that it is secure by finding the issues in the code.
Benefit from the masses of users also pouring through the code to make sure it is safe.
Gain critical mass such that no security flaw goes undiscovered.
Grow complacent and assume all the other users are checking so you don't have.
Gain a large enough install base that malicious contributors add back doors and other nastiness to the code base.
Have a bad thing happen.
Snap out of complacency and start taking security seriously again.
Tell me when they attempt a DOS or send funky packets.
But on the other hand, we're talking about Slashdot. I've forgotten it exists. Maybe that was the purpose of all the hot air.