December 27, 2004
-
Someone's been very busy messing with Xanga.
aka: Something BlogBot This Way Comes...
The following list of 381 xanga sites (at bottom) were all created on 12/24. Most automatically redirect to: http://www.xanga.com/home.aspx?user=leox_dicaprio (who may well be a victim).
And the 381 sites have all been used to flame/spam the following sites which made Featured Content today (on the Classic side):
1.
HEROIC HOMOSEX TO LOVE ANOTHER MAN AS AN EQUAL AND A MAN WIT...
Total eProps: 733 | Total Comments: 255
Posted by Heroic_Homosex - 12/26/2004 at 1:04 PM
2.
Naproxen_the_FLOODED9968 has decided that, even though I'm u...
Total eProps: 704 | Total Comments: 0
Posted by la_faerie_joyeuse - 12/26/2004 at 11:01 AM
3.
[Read entry]
Total eProps: 404 | Total Comments: 255
Posted by rainina11thetime - 12/26/2004 at 10:19 AM
4.
Xanga Type your first post here, then click "Submit" to publ...
Total eProps: 398 | Total Comments: 136
Posted by kitten42 - 12/26/2004 at 3:54 PM
5.
HEROIC_HOMOSEX BECOMES BUBBA'S FUCKTOY After a year in priso...
Total eProps: 247 | Total Comments: 150
Posted by leox_dicaprio - 12/26/2004 at 6:46 PM
6.
NOW I remember why I hate being home... Fuck this.. If you w...
Total eProps: 220 | Total Comments: 0
Posted by Ash_o_leigh - 12/26/2004 at 1:57 PM
7.
5am just back from the hospital... shit i seriously hate dea...
Total eProps: 194 | Total Comments: 113
Posted by eli371 - 12/26/2004 at 9:57 AM
The #1 site above appears to have been actually the flamer/spammer himself (themselves). All the rest appear to be victims.
The rate of commenting on la_faerie_joyeuse (#2 above) was about 18 per minute for 22 minutes. This suggests that there was a mechanism used for auto-commenting. The pattern of the offending site names (see below) and the fact that they were all created on 12/24 also suggests that an auto-creation mechanism was used to generate them. The only other explanation could be a team of deviants working in cahoots.
Update: Here's the auto-populator's self-glorying explanation of his (their) activity left on leox_dicaprio 's latest post:
lol, one of my "hacker" friends sent me to your page and I just bursted out laughing and almost started to cry. The FBI does *NOT* give a shit about this kind of stuff, its very small potatoes compared to the *REAL* crimes the FBI works on (you know, terrorism, fraud, etc. things that actually are worth caring about rather than you getting totally owned and used to mop the floor on Xanga). We are all sitting here online having the times of our lives watching you pretend to think that you really "got" him. By the way, no "hacking" (which is an incorrect term, the correct term is cracking) occured to do the comment flood. A simple script was written to register accounts and post comments to random pages. If you think that is "hacking", then you are just dumb. I think its really funny that you take such offense to the text he posted. It is not like these people who read it are going to be emotionally scarred for life (and anyone who really is does not belong on the internet or out in public). Fundamentalists like you are what is responsible for the puritan-like censorship that is starting to occur everywhere in the media. Also, there is no way for you to track us. We use several layers of anonymous international proxying of our connections to post our stuff. Good luck trying to contact the Russian, Chinese, Vietnamese, Japanese, or Brazilian (just to name a very small few) authorities to get the kind of cooperation you need to trace it to the ulitmate source. You have been trolled and you have lost! Have a nice day.
And, yes, they are anonymizing-proxying as they say since they bypassed my own self-designed PHP detection scripts which would have recorded them otherwise (I got hit earlier, too.)
Reflective later Update: These autopopulators are right: they've committed no crime. They did not hack but mere opportunized on a Xanga sign-up and commenting vulnerability. Yes, they violated Xanga's 'Terms of Service' so that each individual site can be shutdown. But I believe they can generate more newer sites faster than old ones can be shutdown. So I think that they'll just abandon 2 or 3 day old 'known' sites and create auto-generated fresh ones to work their will. They face only 4 practical restrictions: 1) the limit of their own CPU power - their computer(s) and anonymous proxies can only crank out so much in a given time, 2) Xanga recoding its sign-up and commenting to prevent blogbot injection, 3) A slip-up where they were not stealthed and Xanga, by logs, can crosshair-bead the non-anonymoused source IP, or 4) Me, finding out who the fuck they are and storming their quisling teeny-bopping pad and smashing the fuck out of their server with a sledge-hammer equal to or in excess of the mass of their combined brains. heh
I think you can conjure up the implications: Xanga should be very concerned. (And I have contacted John, et.al. 3 times already.)
Here's the list. It appears to be partial. InvisibleAng's comment here refers to other names not even in this list. And elsewhere, others - more names. So an actual comprehensive list, if constructed, would almost certainly be in the 1000s.
Comments (80)
They got me too... 88 messages within minutes. I was able to delete and block. Nothing since.
Bastards.
I just deleted three comments that had been put on my site by some names like this, and I know I wasn't in Featured Content, so the problem seems like it could be even wider-ranging. The first two were identical comments obviously intended to stir up trouble between people with different beliefs about Jesus, but the comments were posted by different names. The last one was the most worrying - it contained a load of meaningless code which I was scared might be some kind of hacker thing.
I checked my Look and Feel modules and found no stray code, but it worried me enough that I deleted the comments and sent a mail off to Xanga's abuse address. The odd part is that these comments didn't appear on the latest of my posts, but rather on a post which I use as a directory of online quizzes and which is linked from my main page - and nobody ever comments to that! So yes, I think some kind of automatic spider-like program is wandering around grabbing random Xanga entry URLs to comment to.
Though I deleted the comments, you can still see the accounts listed as having given Eprops - the first two have been deleted by Xanga gods, but the last account, which posted its code comment to my site only today, has obviously been taken over by Xanga gods, then reclaimed by the original owner. Xanga staff have posted an entry on the site about how the owner has been reported for posting porn on minors' sites, but the entry has evidently been edited by the site's owner.
So.... yeah. Feck. And for your interest, here's the entry where it happened.
yep, that one sucked, i havent been hit by any so far until this one. hope they fry the bastages.
i, too, have not been hit, but have seen the widespread abuse.
Leox got me - I deleted the comment...
Extramarital got me too, but on a very old post. I deleted it. Now blocking.
Have you notified the Xanga Gods???
belief got me once with some page widening crap ... i deleted it
Why can't I find these guys when I need to promote my ebooks!
HA!
Sail on... sail on!!!
bahahaaaa...laughing at Kat's mad face.
saw one of these comments left yesterday at dawnsearlylight blog. it was really beyond foul.
I got hit three times now by three different screen names: first one was gross; the last two were more like jargon. Bleh.
i got one saying how i had a terrible site by one of the homosexual named ones!!
Auto -multiplication and invasion ? There are weird things . Thanks to warn .
I hope you had a great Christmas , friend .
michel
you know, i find something very curious ... how is it that leox_dicaprio only started enabling comments on his xanga posts when he announced he had called the fbi? ... his first few entries have no room to comment ... odd time to suddenly decide to let people comment, don't you think?
FYI - I will be returning here several times today, I want to read the comments of your other readers, to see how many other Peeps were hit... RoseMary
Wow.. thats funny, because i just sent an email off to xanga abuse about kitten's site. Freaky stuff. Did you send a copy of this post to the xanga staff? Ugh. I wish people had better things to do with themselves. This is ridiculous..
Oh goody, another jerk to create problems.
Letmegotoo had University_homo_FLOODED5152
leave a nasty comment that she deleted.
It is a partial list - another ID hit me this morning. I simply deleted the comment, since I was worried that visiting the site might infect me or something. Thanks for the heads up.
I noticed that my boyfriend's site and a bunch of others, other than a story, had some random symbols that went on and on. Lucky for my friends, it only happened once.. and nothing was pornographic as I hear there was.
See what I don't understand is why? The comments I got weren't even readable, they were just (what appeared to be) random letters through about 10 lines of text. No insult, no flaming, so why?
Is the point to make a statement against censorship or whatever else? Okay... then still why not go after the censors, why just random bloggers.
I don't think I'll ever understand or cease to be confused by meaness, especially against random targets. What is the point?
~sigh~
Cocky little bastards, aren't they???
So, these people have no lives? That would be my conclusion. A bid for attention. Total and complete stupidity.
hugs,
wf
JennyG,
I think you got a '3rd generation' comment from them where they either wrongly thought they could inject a new script to massively infect xanga with their trash or they intentionally injected a DOS (denial of service) type of comment where they make your comment page somewhat dysfunctional to read and comment upon.
Xanga has a big problem here. This is a very, very clever blogbot at work. As they claim above, the source appears fully anonymous and there is probably no way to track them unless they slip up or Bush declares it a terrorist act worthy of The War on Terror's investigation. And it may well not go away soon. For beginners, I think Xanga will need to recode registering new users with a 'pattern recognition' type-response to make sure there is someone there typing in the information - and not just an automatized blogbot.
lovely.....just lovely!
Ugh! This is terrible! I certainly hope something is done. Your idea just above sounds like a good one. I have seen that done for getting emails too. Thank God they have not hit me yet. Have a great day and a wonderful tomorrow ! ! ! Hope you had a wonderful Christmas! Sleep with the angels and wake up fully rested and ready for a new day ! ! !
Thanks. I think I reported him like 3 times... I had like 128 comments that had nothing but that story. Fuckin nasty. No weird symbols though... I have younger siblings and such that check my Xanga... Wasn't something I wanted them to read-haha. But yea, I reported him/them/whatever. Thanks lots =) Hope you had a great Christmas Holiday! <3Ashley<3
Thanks for the explanation
Some people have way too much spare time on their hands
Just makes you feel all warm and fuzzy, doesn't it?
I deleted several of my comments, because I thought that there were only 225 (that was the max that xanga could post), so it was really much more than that. It was quite interesting to see that my comments went to zero, even though I still had several hundred.
There's always a way to stop these people. It might not be possible for xanga, including all the other things they have to deal with, but if the right people put enough effort forth, it is possible. It will be possible to trace them, too. Here's why: technically, it would be possible for someone to erase all signs of their identity, but it is very, very difficult. Anyone who can do that is smart enough not to waste his or her time on such a childish prank on xanga.
Any response from the Xanga Gods???
Rose,
No response! But then hackers/crackers often wait until these 'holidays' knowing that security staff and administrators (such as myself!) will be at bare minimum due to vacations, time-off, etc. I bet Xanga is being manned by 1 or 2 individuals who are now totally overwhelmed.
ok allen you told me to prop you. =)
cathy
Steve:
Thanks for the update(s)...
What a mess
Yeah. I got snogged by fantasies_brits_FLOODED2260. It was lovely. Why would someone even bother doing that? Like, really? It is as entertaining as hanging one's own bare ass out the car window while cruising down the interstate; no one hardly notices and those who do just shake thier heads and go along their merry way.
I had something on mine from someone named Kaspersky threatening a kidnap/rape/murder but the site was shut down and xanga have never responded to my emails (3 of them) to abuse.
These people must have small lives if this is their only hobby. I guess we shouldn't get mad, just pity them, eh?
Rose
Wow. That's amazing... in fact, I saw one of my Xanga friends hit by that "Chicago towers" one, but they didn't leave a comment. Thanks for the head's up.
Sheeesh.
hey thanks for the comment, im glad there are helpful people like you around to even out the trash like this blogbot guy... good luck and keep up the good work... PS if you need help screwin these guys up once you find them, id be happy to. thanks again!
hey. i'm just here to spill out my woes over the intellegence of the average xangan because nobody else would listen. the majority of the commenters on leox_dicaprio's site sadly DO NOT HAVE any sort of reading comprehension, or any regards to reading. it depresses me and angers me at the same time. while these nasty fuckers are infesting xanga, these immature retards are going "wdf, yoo st0p riTiN sh1eet oN mAh sitE". i can only shake my head and sigh.
anyway, thank you for your efforts. i appreciate them.
whoa. i shed the proxy and see that there's a cure video at your site! oh, if only you knew my history, that part of my history, and the cure.
it takes.me.back.
seems like this would be easier to handle via db for now, and increased registration security after a release.
how do you think this is 'spread'? why have so many of my subscribers and subscriptions been plagued, yet not me?!
(not that i'm complaining.)
Ok, this is one thing, but I think right now we should care about real troubles of the world. Please don't get me wrong. Just visit my page or LadyKiadri and please help, if you can. There is a catastrophe these days that killed at least 24.000 people... Anyway, best wishes for a very Happy 2005 from lonelydolphin
and Peace
I will never understand what goes thru thier minds when they are doing this.. just for kicks...
Don't they realize that in the real world, when they start pulling this kind of crap they get fired and possibly arrested because they don't stop at this kind of stuff... this is small stuff... they will graduate on to bigger and more terrible things...
I just hope that I am not around to see it...
or they are caught first....
they left a message on mine and it defaulted to dicaprio... they are too weird.
Good to know about. I suppose I should count myself lucky, as I've had to delete only one of these, from the new_brits_aleve username.
You go get 'em Steve!
notforprophet
atrggqjcmd
trggqjcmd http://www.g167k826dzdjh2jg670ro9nz9m6lz412s.org/
[url=http://www.g167k826dzdjh2jg670ro9nz9m6lz412s.org/]utrggqjcmd[/url]
If you don't have any fashion sense, this article is for you. There is no reason to be a fashion misfit. With some work and effort, you can improve your sense of style. The following article can help.
Replica Handbags
Hello there, simply was aware of your blog via Google, and located that it's really informative. I am going to be careful for brussels. I will appreciate if you proceed this in future. Lots of folks will be benefited from your writing. Cheers!
I was recommended this blog through my cousin. I am no longer sure whether or not this put up is written via him as nobody else know such particular approximately my trouble. You are amazing! Thanks!
I do not even know the way I ended up right here, but I believed this submit was once great. I do not understand who you might be but definitely you're going to a well-known blogger for those who are not already. Cheers!
Calzoncillos Calvin Klein
Hello my loved one! I want to say that this post is awesome, nice written and include approximately all significant infos. I'd like to see extra posts like this .
Great post. I was checking constantly this weblog and I'm inspired! Very helpful information particularly the final section
I handle such info much. I was seeking this certain info for a long time. Thank you and best of luck.
It is the best time to make a few plans for the future and it is time to be happy. I have learn this publish and if I may just I desire to counsel you few fascinating things or suggestions. Perhaps you could write next articles referring to this article. I want to learn more things approximately it!
Hey There. I discovered your weblog the use of msn. This is a really well written article. I will make sure to bookmark it and come back to learn extra of your useful information. Thank you for the post. I'll certainly comeback.
hello there and thank you for your information ? I've certainly picked up something new from right here. I did on the other hand experience a few technical issues the use of this web site, since I skilled to reload the website many times prior to I may just get it to load properly. I have been thinking about in case your hosting is OK? Not that I am complaining, but slow loading cases occasions will sometimes impact your placement in google and could injury your high-quality ranking if ads and marketing with Adwords. Anyway I'm including this RSS to my e-mail and could look out for much extra of your respective intriguing content. Make sure you replace this again soon..
You actually make it seem really easy together with your presentation however I to find this matter to be really one thing which I feel I'd never understand. It kind of feels too complicated and very extensive for me. I am looking ahead on your subsequent submit, I'll try to get the dangle of it!
Excellent blog right here! Also your website lots up fast! What web host are you the usage of? Can I get your affiliate link to your host? I wish my site loaded up as fast as yours lol
hi
it's good posting.
國中
Is that true? Ill spread this information. Anyway, nice posting.
平面設計
Is that true? Ill spread this information. Anyway, good posting.
PDF講義檔
Is that true? Ill spread this information. Anyway, nice posting.
翰林國小
hello
that's good posting.
化學科
Hello my loved one! I want to say that this article is awesome, nice written and include approximately all significant infos. I would like to look extra posts like this .
Nike Air Max Baratas
You understand therefore considerably when it comes to this matter, made me in my view imagine it from a lot of numerous angles. Its like men and women don't seem to be fascinated except it is one thing to do with Girl gaga! Your own stuffs great. At all times deal with it up!
Thanks for the good writeup. It if truth be told was once a amusement account it. Glance advanced to more introduced agreeable from you! By the way, how could we communicate?
http://www.siarc.it/brands/scarpe-primavera-estate.html scarpe primavera estate
http://www.ursiniedizioni.it/brands/marca-di-scarpe-sportive.html marca di scarpe sportive
http://www.lopezviaggi.it/brands/air-jordan-store.html air jordan store
http://www.fairsrl.it/brands/sneakers-alte-nike.html sneakers alte nike
http://www.ursiniedizioni.it/brands/shop-online-shoes.html shop online shoes
http://www.viaggidelia.it/brands/nike-5-elastico.html nike 5 elastico
http://www.agriturismoraffaella.it/brands/scarpe-nike-vintage.html scarpe nike vintage
ミズノ 軟式グローブ 外野手用
ポール スミス 梅田 ボールペン
ザノースフェイス ボックス花柄 リュック
アルマーニ 種類 値段
コーチ ショルダー アメリカ
Comments are closed.