The Grey Labyrinth is a collection of puzzles, riddles, mind games, paradoxes and other intellectually challenging diversions. Related topics: puzzle games, logic puzzles, lateral thinking puzzles, philosophy, mind benders, brain teasers, word problems, conundrums, 3d puzzles, spatial reasoning, intelligence tests, mathematical diversions, paradoxes, physics problems, reasoning, math, science.

   
The Grey Labyrinth Forum Index
 FAQFAQ   SearchSearch   MemberlistMemberlist   UsergroupsUsergroups    RegisterRegister  
 ProfileProfile   Log in to check your private messagesLog in to check your private messages   Log inLog in 

Sabaku banned

 
Reply to topic    The Grey Labyrinth Forum Index -> Feature Requests / Site Problems
View previous topic :: View next topic  
Author Message
Lepton
1:41+ Arse Scratcher



PostPosted: Sat Apr 14, 2007 9:16 pm    Post subject: 1 Reply with quote

I've banned the username Sabaku_no_Gaara for 'inappropriate language'. Here's the thread; see the bottom of page 1 and the top of page 2: thread.
Discussion?
Back to top
View user's profile Send private message Send e-mail AIM Address
Neo
Daedalian Member



PostPosted: Sat Apr 14, 2007 9:50 pm    Post subject: 2 Reply with quote

Eh. Another troll bites the dust. I like having an empty ban list, but he was only going to get worse if left unchecked.
_________________
Ad Astra
Back to top
View user's profile Send private message
Dented Ford
Hoopy Frood



PostPosted: Sat Apr 14, 2007 10:20 pm    Post subject: 3 Reply with quote

I have only admiration at your restraint in not doing it sooner.
Back to top
View user's profile Send private message
Lepton
1:41+ Arse Scratcher



PostPosted: Sun Apr 15, 2007 12:48 am    Post subject: 4 Reply with quote

In a fit of curiosity, I found an exploit that would let Sabaku (or someone else) perform administrative functions by embedding a script into an offsite-referenced avatar and getting an admin user to view the avatar. It should also be possible to do it with [img] tags.

Now I feel justified in my habit of not logging in. : )

(Antrax, the upgrade fixes this; if you've got time... here is some info)
Back to top
View user's profile Send private message Send e-mail AIM Address
Antrax
ESL Student



PostPosted: Sun Apr 15, 2007 6:13 am    Post subject: 5 Reply with quote

I personally am immune to such attacks, due to a combination of relevant knowledge and choice of browser/plugins. That being said, I can't say I would have banned anyone for inappropriate language, lest I be forced to ban myself and many other site regulars.
_________________
After years of disappointment with get rich quick schemes, I know I'm gonna get rich with this scheme. And quick!
Back to top
View user's profile Send private message Send e-mail Visit poster's website
Neo
Daedalian Member



PostPosted: Sun Apr 15, 2007 7:48 am    Post subject: 6 Reply with quote

Antrax wrote:
I personally am immune to such attacks, due to a combination of relevant knowledge and choice of browser/plugins.


Is there anything I should know?
_________________
Ad Astra
Back to top
View user's profile Send private message
Antrax
ESL Student



PostPosted: Sun Apr 15, 2007 7:58 am    Post subject: 7 Reply with quote

Well, without having read the article I'm guessing the attack is stealing a cookie and subsequently using it to hijacking a session. That wouldn't be too bad as re-authentication is required to log on to the admin panel, even if you're already logged on. Plus, if you don't use the "log me in automatically", you are again immune. Of course, Firefox offers a lot of protection, and the fact I only run javascript I explicitly allow and that I reject all cookies unless otherwise specificied both assist in my immunity to these simple attacks.
So, you could do any of those, or you could prod me to update our phpBB version more often Felicitous
_________________
After years of disappointment with get rich quick schemes, I know I'm gonna get rich with this scheme. And quick!
Back to top
View user's profile Send private message Send e-mail Visit poster's website
Samadhi
+1



PostPosted: Sun Apr 15, 2007 8:12 am    Post subject: 8 Reply with quote

Yeah. Yeah. So how about that update?
_________________
And he lived happily ever after. Except for the dieing at the end and the heartbreak in between.
Back to top
View user's profile Send private message Send e-mail MSN Messenger
Antrax
ESL Student



PostPosted: Sun Apr 15, 2007 10:44 am    Post subject: 9 Reply with quote

Having read Lepton's URL, I see that this attack is old news, and I believe we've patched against it a while back.
_________________
After years of disappointment with get rich quick schemes, I know I'm gonna get rich with this scheme. And quick!
Back to top
View user's profile Send private message Send e-mail Visit poster's website
Display posts from previous: by   
Reply to topic    The Grey Labyrinth Forum Index -> Feature Requests / Site Problems All times are GMT
Page 1 of 1

 
Jump to:  
You can post new topics in this forum
You can reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum


Powered by phpBB © 2001, 2005 phpBB Group
Site Design by Wx3