Programming Theory
 
Forums: » Register « |  User CP |  Games |  Calendar |  Members |  FAQs |  Sitemap |  Support | 
User Name:
Password:
Remember me
Go Back   Codewalkers ForumsOther TechnologiesProgramming Theory

Reply
Add This Thread To:
  Del.icio.us   Digg   Google   Spurl   Blink   Furl   Simpy   Y! MyWeb 
Thread Tools Search this Thread Rate Thread Display Modes
 
Unread Codewalkers Forums Sponsor:
You don't need a fax machine to get faxes. Get a fax-to-email fax number from CallWave. Try it free.
  #16  
Old December 14th, 2006, 12:40 PM
foreignis foreignis is offline
Codewalkers Newbie (0 - 499 posts)
 
Join Date: Apr 2007
Location: Jacksonville, FL, USA
Posts: 54 foreignis User rank is Just a Lowly Private (1 - 20 Reputation Level) 
Time spent in forums: < 1 sec
Reputation Power: 2
Send a message via AIM to foreignis
RE: CAPTCHA design

why not just ask a question?

I've never done anything in this area, but if the bots are looking for an image, take away that aspect of the captcha and fulfill it with some other means. For instance, ajaxian.com asks a random question each time you submit a form. Granted, the answer is easy for a human, there's no easy way for a bot to understand the questions and plus nobody is looking for random security questions.

Here's another idea: would it make a difference to change how the captcha is submitted? perhaps require the user to check a checkbox to display the captcha, then fill it out, or separate the input portion into two text boxes rather than just one.

My only other idea would be to use divs to build a font. create a function to read in a string like "AvImWe" and use a switch condition to call function letter_A(), letter_v(), letter_I, etc. Each function would contain the code to build that letter just using different sized divs with a uniform background/foreground contrast. If there are no images or text, I don't see how a bot would know what to look for.

Reply With Quote
  #17  
Old December 15th, 2006, 09:19 PM
Zaphod2016 Zaphod2016 is offline
Codewalkers Newbie (0 - 499 posts)
 
Join Date: Apr 2007
Posts: 4 Zaphod2016 User rank is Just a Lowly Private (1 - 20 Reputation Level) 
Time spent in forums: < 1 sec
Reputation Power: 0
RE: CAPTCHA design

From a user pov, I think foreignis has a good point. Personally, I find entering CAPTCHAS to be annoying. Especially when it takes me 3 tries to get it right.

However, with a multiple-choice "which pictures shows a puppy?" question, bots could simply guess and have a [x in y] (z%) chance of getting through.

This may seem trivial, but its not. A botter can just toss SPAM at your site endlessly. Even if only 5% got through, the SPAMMER could simply attempt to post more often (20x) and see no net difference.

As someone above mentioned, Askimet for WordPress is fantastic. However, its not code, but rather a central database of spam, which makes it so effective.

The best anti-spam project I've heard of is "Okopipi", however, that open-source project hasn't been able to get off the ground just yet. If interested, see http://okopipi.org/


Reply With Quote
  #18  
Old December 16th, 2006, 09:53 PM
trippleweb's Avatar
trippleweb trippleweb is offline
Contributing User
Codewalkers Novice (500 - 999 posts)
 
Join Date: Apr 2007
Location: Victoria, BC, Canada
Posts: 702 trippleweb User rank is Just a Lowly Private (1 - 20 Reputation Level) 
Time spent in forums: 6 h 25 m 54 sec
Reputation Power: 2
RE: CAPTCHA design

I find capchas to very useful, as soon as I added it, I never saw spam from my forms again.

However there are many people who have capchas giving other capchas a bad name by making them unreadable.

Spammers who see that you have integrated capcha in your contact form will just continue to another website untill they find one without one(unless you somehow pissed them off).Therefore it is not necessary to worry about someone trying to circumvent your capcha.(Similar to using the "Klub" for your vehicle to prevent auto theft)

The best way to make it user-friendly is to not distort the letters, make sure the foreground and background are contrasting, and remove characters such as i,1, z, s, etc. so there is no confusion.

I found the capcha tutorial here on codewalkers to be a great foundation for creating capchas.

My capcha design started with the tutorial.
-Variable amount of lines
-Variable x and y co-ordinates for the lines
-Removing conflicting characters

Reply With Quote
Reply

Viewing: Codewalkers ForumsOther TechnologiesProgramming Theory > CAPTCHA design


Thread Tools  Search this Thread 
Search this Thread:

Advanced Search
Display Modes  Rate This Thread 
Rate This Thread:


Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
View Your Warnings | New Posts | Latest News | Latest Threads | Shoutbox
Forum Jump

 Free IT White Papers!
 
Accelerating Trading Partner Performance
One in five. That's how many partner transactions have at least one error. That is an amazing statistic, particularly given the extraordinary leaps in innovation across the global supply chain during the past two decades. Download this white paper to learn more.

 
Competing on Analytics
This Tech Analysis is designed to help identify characteristics shared by analytics competitors, and includes information about 32 organizations that have made a commitment to quantitative, fact-based analysis.

 
Cost Effective Scaling with Virtualization and Coyote Point Systems
An overview of the industry trend toward virtualization, how server consolidation has increased the importance of application uptime and the steps being taken to integrate load balancing technology with virtualized servers.

 
Five Checkpoints to Implementing IP Telephony
Implementation planning for IP PBX software and IP telephony has become vital as businesses replace discontinued legacy PBX phone systems. This informative whitepaper outlines five &quot;checkpoints&quot; for any implementation plan that will help make IP communications a successful proposition.

 
Hosted Email Security: Staying Ahead of New Threats
In the last two years, email has become a fierce battleground between the nefarious forces of spam and malware, and the heroes of messaging protection. The spam volumes increased alarmingly every month, bringing clever new forms of phishing and virus propagation attacks.

 

Forums: » Register « |  User CP |  Games |  Calendar |  Members |  FAQs |  Sitemap |  Support | 
  
 





© 2003-2008 by Developer Shed. All rights reserved. DS Cluster 6 hosted by Hostway