HackerOne users: Testing against this community violates our program's Terms of Service and will result in your bounty being denied.
Search
-
Re: How to block this spambot?
Update: The advice here helped enormously and I think I've closed the vulnerability. Thanks again for the help, @x00 and @peregrine ! Due to the database import (from the weird old proprietary forums), many threads had an InsertUserID of 0. These threads' OPs (author "Unknown") could be edited simply by accessing… -
How to block this spambot?
The bot edits an old thread's OP, as user 0. That's all it seems to do. Here's how its edits show up in the edit log: And here's how they show up in the database: I've added the most obvious IP address range to the ban list like so, but it doesn't seem to stop it at all! Any suggestions? I'm running Vanilla 2.1.5
2 results