18 Users Commented In This Post

Subscribe To This Post Comment Rss Or TrackBack URL
Blake says:

Kind of like reCAPTCHA Mailhide.

If it’s your own website, it’s far better to have a contact form that gets submitted to your own email. For even better spam protection, have the contact form sent to a secondary email address which then gets forwarded to your real email. That way if that secondary address starts getting spam, you can just ditch that one and make a new one.

I agree with you about the captchas though. They’re getting solved by advanced software, and they’re even getting hard for humans to decipher.

But I found a site today called note2email that uses a different type of captcha that seems harder to crack. Instead of the usual “fill in the text you see here” type, this one asks you to identify which image listed is a part of the site’s logo. You choose from 3 or 4 images, the correct one varying in position, rotation and zoom level. And the URL of the image is a temporary one, like /files/images/temp/14430200.jpg. That might be the next big solution for authentication problems.

just me says:

??your comment page requires me to publish my email address when your article says not to give that info away???

Martin says:

Your email is not published public ally when you enter it and I have no use for it.

Daniel says:

So how do I enter an URL in a form where the format of the email address is checked by JavaScript?

David Bradley says:

“just me” does have a point, almost every blog comment form asks for an email address and says it won’t publish, but why ask at all? While that’s probably true for the majority, I bet there are some bloggers out there who farm these addresses from their database and use them in some way. I’ve just thought of one as it happens.

However, I treat comments on my site in the same way a letters editor on a newspaper would. If someone comments, then they should provide some way for me, as editor, to contact them if needs be.

Martin says:

David I think that’s the main reason. If someone comments we need a way to get back to them. Posting an email is not really a way to thwart of spam because anyone can type a bogus email address anyway.

And there are definitely some bloggers who farm emails. My suggestion would be to create an account at Yahoo or Gmail or wherever and use that solely for commenting.

Martin says:

Daniel you do not. This is only for publishing on websites, forums and other publicly accessible places, not web forms that do not get published on the web

David Bradley says:

I think I’ve said it before, here and elsewhere, but no amount of obfuscation will prevent spam hitting your mailbox eventually because the spammers guess (en masse) email addresses anyway, so that you may never have made an address public, but if it’s simple, it will be invented by a bot somewhere and added to a list if it doesn’t bounce. I wrote about how to prevent this happening on Sciencetext:

http://www.sciencetext.com/sqt-anonymize-your-email.html

darkkosmos says:

ReCapatcha has already been cracked..

David Bradley says:

I just took a look at the comments addresses in mySQL database - there are currently 666 approved…scareeeee!

Rarst says:

I have same email address for eight years. It was published in the open hundreds of times.

I get at most 2-3 spam emails weekly. Spam filter in Opera can easily handle hundred times that.

Read somewhere in the post recently that good chunk of people actually use/buy stuff that is spammed to them. That’s main problem - click link in spam and you admit that you read it and interested.

Email spam is huge because no matter how much people complain - they make it viable and profitable. If you ignore it - it just stops coming.

Stop complaining and start ignoring. If everyone does that spam will disappear instantly.

Transcontinental says:

The only captchas I consider both secure and painless for a human being are those of logic, like the intruder image among a set of logically linked ones.

Concerning email, DEA (Disposable Email Address) seems to me the only efficient privacy method. DEA + Mailwasher (filtering email via Spamhaus and Spamcop) = not one spam : I have zero spam.

The nicest thing with DEA is when a given DEA has been given to only one correspondent : if spam you know where it comes from. That’s why you never get spam!

just me says:

blake,

if you have to select 1 image out of 4 then 25% of the time , the spam bot will get it right?

martin,

you can contact your posters by answering them on this page.

if the poster wants an answer he will come back here to look at the other answers.

my point is .. i don’t know you. you don’t know me…why do you want to keep in touch?

it is a waste of cyberspace for me to type in a fake email address anyway..

Martin says:

What if I want an answer because of a comment made. A clarification perhaps, a source or a better explanation? A source has to be contactable, that’s my opinion.

just me says:

sorry, i think what i mean is - do not make it mandatory for he user to enter an email address.

as of now it is required.

my 2c worth of nothing really.

it was just a contradiction on your own post.

thanks

Transcontinental says:

I think ‘just me says’ is a wise and intelligent person, very intelligent, brilliant. Oxford, Cambridge, Harvard, Stanford ? :=)

Feel free to publish your e-mail address on Internet with Tinymail says:

[...] there is an analysis on ghacks, which talks about the two flaws of this [...]

Leave Your Comments Below
Hello, please leave your thought below

Please Note: Each comment will be manually approved by an admin. There is no guarantee that a comment will be posted. Please do not submit the comment multiple times.