<?xml version="1.0" encoding="UTF-8"?><!-- generator="wordpress/2.0.7" -->
<rss version="2.0" 
	xmlns:content="http://purl.org/rss/1.0/modules/content/">
<channel>
	<title>Comments on: Twiki userpages spammed</title>
	<link>http://spamhuntress.com/2006/08/06/twiki-userpages-spammed/</link>
	<description>Just another WordPress weblog</description>
	<pubDate>Sun, 07 Sep 2008 15:15:43 +0000</pubDate>
	<generator>http://wordpress.org/?v=2.0.7</generator>

	<item>
		<title>by: Peter Thoeny</title>
		<link>http://spamhuntress.com/2006/08/06/twiki-userpages-spammed/#comment-29949</link>
		<pubDate>Mon, 07 Aug 2006 02:11:44 +0000</pubDate>
		<guid>http://spamhuntress.com/2006/08/06/twiki-userpages-spammed/#comment-29949</guid>
					<description>The Spamhuntress blog on "TWiki userpages spammed" prompted me to write an overview on wiki spam on my own blog: &lt;a target="_blank" onclick="return top.js.OpenExtLink(window,event,this)" href="http://www.structuredwikis.com/peter_2006-08-06.html"&gt;http://www.structuredwikis.com/peter_2006-08-06.html&lt;/a&gt;</description>
		<content:encoded><![CDATA[<p>The Spamhuntress blog on &#8220;TWiki userpages spammed&#8221; prompted me to write an overview on wiki spam on my own blog: <a target="_blank" onclick="return top.js.OpenExtLink(window,event,this)" href="http://www.structuredwikis.com/peter_2006-08-06.html">http://www.structuredwikis.com/peter_2006-08-06.html</a>
</p>
]]></content:encoded>
				</item>
	<item>
		<title>by: Joe</title>
		<link>http://spamhuntress.com/2006/08/06/twiki-userpages-spammed/#comment-29947</link>
		<pubDate>Mon, 07 Aug 2006 02:00:18 +0000</pubDate>
		<guid>http://spamhuntress.com/2006/08/06/twiki-userpages-spammed/#comment-29947</guid>
					<description>I know your focus is intranet, but there are many people using it on the web who likely aren't on your mailing list.  I know I rarely sign up to mailing lists of software I use.  We have been trying to raise the awareness of wiki spam for years but it isn't working well.  Like comment spam, the only thing that will lessen the problem is wikis with better built in spam protection.  Few have it.  TWiki isn't targeted for the internet so it is somewhat understandable, but even the big ones like MediaWiki provide little protection by default.</description>
		<content:encoded><![CDATA[<p>I know your focus is intranet, but there are many people using it on the web who likely aren&#8217;t on your mailing list.  I know I rarely sign up to mailing lists of software I use.  We have been trying to raise the awareness of wiki spam for years but it isn&#8217;t working well.  Like comment spam, the only thing that will lessen the problem is wikis with better built in spam protection.  Few have it.  TWiki isn&#8217;t targeted for the internet so it is somewhat understandable, but even the big ones like MediaWiki provide little protection by default.
</p>
]]></content:encoded>
				</item>
	<item>
		<title>by: Peter Thoeny</title>
		<link>http://spamhuntress.com/2006/08/06/twiki-userpages-spammed/#comment-29919</link>
		<pubDate>Mon, 07 Aug 2006 00:01:43 +0000</pubDate>
		<guid>http://spamhuntress.com/2006/08/06/twiki-userpages-spammed/#comment-29919</guid>
					<description>The BlackListPlugin could be included in the distribution, however, it does not make sense for TWiki since its focus is the Intranet.

To address the issue, we sent out several spam related alerts to the twiki-announce mailing list, and I sent personal e-mails to some site owners not on the list. Still, the awareness of wiki spam needs to be raised so that more site owners take actions.</description>
		<content:encoded><![CDATA[<p>The BlackListPlugin could be included in the distribution, however, it does not make sense for TWiki since its focus is the Intranet.</p>
<p>To address the issue, we sent out several spam related alerts to the twiki-announce mailing list, and I sent personal e-mails to some site owners not on the list. Still, the awareness of wiki spam needs to be raised so that more site owners take actions.
</p>
]]></content:encoded>
				</item>
	<item>
		<title>by: Joe</title>
		<link>http://spamhuntress.com/2006/08/06/twiki-userpages-spammed/#comment-29883</link>
		<pubDate>Sun, 06 Aug 2006 21:09:10 +0000</pubDate>
		<guid>http://spamhuntress.com/2006/08/06/twiki-userpages-spammed/#comment-29883</guid>
					<description>Couldn't the BlackListPlugin be included and turned on in the default install?  People on intranets who don't need it could easily turn it off.  But it would protect those who use Twiki on the internet that aren't aware of the spam problem or the solution.</description>
		<content:encoded><![CDATA[<p>Couldn&#8217;t the BlackListPlugin be included and turned on in the default install?  People on intranets who don&#8217;t need it could easily turn it off.  But it would protect those who use Twiki on the internet that aren&#8217;t aware of the spam problem or the solution.
</p>
]]></content:encoded>
				</item>
	<item>
		<title>by: Spamhuntress &#187; Blog Archive &#187; The upload spammer</title>
		<link>http://spamhuntress.com/2006/08/06/twiki-userpages-spammed/#comment-29865</link>
		<pubDate>Sun, 06 Aug 2006 19:44:24 +0000</pubDate>
		<guid>http://spamhuntress.com/2006/08/06/twiki-userpages-spammed/#comment-29865</guid>
					<description>[...] Spamhuntress Just another WordPress weblog      &#171; Twiki userpages spammed [...]</description>
		<content:encoded><![CDATA[<p>[&#8230;] Spamhuntress Just another WordPress weblog      &laquo; Twiki userpages spammed [&#8230;]
</p>
]]></content:encoded>
				</item>
	<item>
		<title>by: Peter Thoeny</title>
		<link>http://spamhuntress.com/2006/08/06/twiki-userpages-spammed/#comment-29863</link>
		<pubDate>Sun, 06 Aug 2006 19:36:59 +0000</pubDate>
		<guid>http://spamhuntress.com/2006/08/06/twiki-userpages-spammed/#comment-29863</guid>
					<description>Wiki spam is a growing problem. Spammers get more sophisticated; we fight back. Spam on TWiki sites is not new. To find out, please follow the the WikiSpam link located on the twiki.org homepage: http://twiki.org/cgi-bin/view/Codev/WikiSpam

I disagree with your statement: TWiki developers do fight spam for a long time. TWiki has a BlackListPlugin that is quite effective, and we update the Plugin every time we disciver a new spam twist, such as redirects obfuscated in JavaScript eval.

The BlackListPlugin fights spam on several fronts:
   * Multiple registrations in rapid succession
   * Multiple page saves in rapid succession
   * Saving text with known wiki-spam (spam list is maintained and shared by TWiki, MoinMoin and Mediawiki sites)
   * Attaching files with known wiki-spam
   * Attaching files with JavaScript eval
   * Manually maintained BLACKLIST of malicious IP addresses
   * Automatically updated BANLIST of IP addresses with suspicious activities
   * Registration form with magic number in hidden form field to make scripted registrations harder
   * Add a rel="nofollow" parameter to external URLs to defeat the purpose of spamming TWiki sites

We strongly recommend owners of public TWikis to upgrade to the latest BlackListPlugin. But the reality is that there are many public TWiki sites that do not even have this Plugin installed.

Thanks for raising the awareness on wiki spam!

-- Peter Thoeny - peter AT structuredwikis DOT com - http://twiki.org/</description>
		<content:encoded><![CDATA[<p>Wiki spam is a growing problem. Spammers get more sophisticated; we fight back. Spam on TWiki sites is not new. To find out, please follow the the WikiSpam link located on the twiki.org homepage: <a href="http://twiki.org/cgi-bin/view/Codev/WikiSpam" rel="nofollow">http://twiki.org/cgi-bin/view/Codev/WikiSpam</a></p>
<p>I disagree with your statement: TWiki developers do fight spam for a long time. TWiki has a BlackListPlugin that is quite effective, and we update the Plugin every time we disciver a new spam twist, such as redirects obfuscated in JavaScript eval.</p>
<p>The BlackListPlugin fights spam on several fronts:<br />
   * Multiple registrations in rapid succession<br />
   * Multiple page saves in rapid succession<br />
   * Saving text with known wiki-spam (spam list is maintained and shared by TWiki, MoinMoin and Mediawiki sites)<br />
   * Attaching files with known wiki-spam<br />
   * Attaching files with JavaScript eval<br />
   * Manually maintained BLACKLIST of malicious IP addresses<br />
   * Automatically updated BANLIST of IP addresses with suspicious activities<br />
   * Registration form with magic number in hidden form field to make scripted registrations harder<br />
   * Add a rel=&#8221;nofollow&#8221; parameter to external URLs to defeat the purpose of spamming TWiki sites</p>
<p>We strongly recommend owners of public TWikis to upgrade to the latest BlackListPlugin. But the reality is that there are many public TWiki sites that do not even have this Plugin installed.</p>
<p>Thanks for raising the awareness on wiki spam!</p>
<p>&#8211; Peter Thoeny - peter AT structuredwikis DOT com - <a href="http://twiki.org/" rel="nofollow">http://twiki.org/</a>
</p>
]]></content:encoded>
				</item>
</channel>
</rss>
