<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: reCAPTCHA</title>
	<atom:link href="http://www.za3tar.net/2008/04/19/recaptcha/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.za3tar.net/2008/04/19/recaptcha/</link>
	<description>Comments, Observations, and Brain Dumps from Ramallah (at heart).</description>
	<lastBuildDate>Tue, 02 Feb 2010 03:45:16 -0800</lastBuildDate>
	<generator>http://wordpress.org/?v=2.9.2</generator>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
		<item>
		<title>By: Hmmm</title>
		<link>http://www.za3tar.net/2008/04/19/recaptcha/comment-page-1/#comment-44151</link>
		<dc:creator>Hmmm</dc:creator>
		<pubDate>Tue, 26 May 2009 19:21:15 +0000</pubDate>
		<guid isPermaLink="false">http://www.za3tar.net/?p=216#comment-44151</guid>
		<description>Which also means that the chances to defeat any given captcha are significantly better than they appear at a glance.</description>
		<content:encoded><![CDATA[<p>Which also means that the chances to defeat any given captcha are significantly better than they appear at a glance.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Hmmm</title>
		<link>http://www.za3tar.net/2008/04/19/recaptcha/comment-page-1/#comment-44149</link>
		<dc:creator>Hmmm</dc:creator>
		<pubDate>Tue, 26 May 2009 19:15:28 +0000</pubDate>
		<guid isPermaLink="false">http://www.za3tar.net/?p=216#comment-44149</guid>
		<description>hmmm, it&#039;s then relatively easy to guess which one of the words is in the database, and screw with the recaptcha guys. The last one was &#039;Sleigh thongs&#039;, but  &#039;Xxxxxx thongs&#039; works fine too...</description>
		<content:encoded><![CDATA[<p>hmmm, it&#8217;s then relatively easy to guess which one of the words is in the database, and screw with the recaptcha guys. The last one was &#8216;Sleigh thongs&#8217;, but  &#8216;Xxxxxx thongs&#8217; works fine too&#8230;</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: za3tar</title>
		<link>http://www.za3tar.net/2008/04/19/recaptcha/comment-page-1/#comment-1848</link>
		<dc:creator>za3tar</dc:creator>
		<pubDate>Mon, 21 Apr 2008 09:37:17 +0000</pubDate>
		<guid isPermaLink="false">http://www.za3tar.net/?p=216#comment-1848</guid>
		<description>&lt;b&gt;Qwaider:&lt;/b&gt; Hahaha .. yislamo</description>
		<content:encoded><![CDATA[<p><b>Qwaider:</b> Hahaha .. yislamo</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Qwaider قويدر</title>
		<link>http://www.za3tar.net/2008/04/19/recaptcha/comment-page-1/#comment-1836</link>
		<dc:creator>Qwaider قويدر</dc:creator>
		<pubDate>Mon, 21 Apr 2008 08:41:54 +0000</pubDate>
		<guid isPermaLink="false">http://www.za3tar.net/?p=216#comment-1836</guid>
		<description>By the way, just to let you know. I just implemented recaptcha for my registration routines :) based on your recommendation. Yalla .. 3eesh :)</description>
		<content:encoded><![CDATA[<p>By the way, just to let you know. I just implemented recaptcha for my registration routines <img src='http://www.za3tar.net/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' />  based on your recommendation. Yalla .. 3eesh <img src='http://www.za3tar.net/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
]]></content:encoded>
	</item>
	<item>
		<title>By: za3tar</title>
		<link>http://www.za3tar.net/2008/04/19/recaptcha/comment-page-1/#comment-1684</link>
		<dc:creator>za3tar</dc:creator>
		<pubDate>Sun, 20 Apr 2008 17:23:28 +0000</pubDate>
		<guid isPermaLink="false">http://www.za3tar.net/?p=216#comment-1684</guid>
		<description>&lt;b&gt;Qwaider:&lt;/b&gt; Oh cool. I always wondered why you don&#039;t have any &quot;visible&quot; anti-spam stuff. But it turns out it&#039;s all &quot;under the hood&quot; :-) .

Funny that you mention Honeypots, i almost got to work on them in undergrad. They wanted to make sure that their work footprint mimics that of machines that are actually used.

Can&#039;t wait to see your list. Personally, i don&#039;t have much on this site. Just Aksimet and reCaptcha. Actually, Aksimet has not been catching any spam after reCaptcha has been installed :-)</description>
		<content:encoded><![CDATA[<p><b>Qwaider:</b> Oh cool. I always wondered why you don&#8217;t have any &#8220;visible&#8221; anti-spam stuff. But it turns out it&#8217;s all &#8220;under the hood&#8221; <img src='http://www.za3tar.net/wp-includes/images/smilies/icon_smile.gif' alt=':-)' class='wp-smiley' />  .</p>
<p>Funny that you mention Honeypots, i almost got to work on them in undergrad. They wanted to make sure that their work footprint mimics that of machines that are actually used.</p>
<p>Can&#8217;t wait to see your list. Personally, i don&#8217;t have much on this site. Just Aksimet and reCaptcha. Actually, Aksimet has not been catching any spam after reCaptcha has been installed <img src='http://www.za3tar.net/wp-includes/images/smilies/icon_smile.gif' alt=':-)' class='wp-smiley' /> </p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Qwaider قويدر</title>
		<link>http://www.za3tar.net/2008/04/19/recaptcha/comment-page-1/#comment-1683</link>
		<dc:creator>Qwaider قويدر</dc:creator>
		<pubDate>Sun, 20 Apr 2008 08:29:19 +0000</pubDate>
		<guid isPermaLink="false">http://www.za3tar.net/?p=216#comment-1683</guid>
		<description>I have been working on this for so long that I came to this conclusion
There&#039;s no single way that can combat spam on it&#039;s own. Starting with depriving spammers from their beloved zombies and proxies, then going along the nofollow lines, and combining that with contextual smartness and most importantly booby trapping them inside the HTML code. All of these help eliminate spam.
(I use all these techniques on my blog and a few cute other tricks and the results have been very impressive so far) Sadly, not many people or developers are able to do this in an efficient way yet. And I&#039;m afraid the same issues with emails are just waiting to be translated to comment spam.
Couple of noteworthy projects. Project Honeypot, actually tracks, captures and provides help for people who want to look up spammers. Very noble idea. And &quot;Stop forum spam&quot; (I think) another very interesting endeavour to stop these spammers. 
One day I will share my list too :)</description>
		<content:encoded><![CDATA[<p>I have been working on this for so long that I came to this conclusion<br />
There&#8217;s no single way that can combat spam on it&#8217;s own. Starting with depriving spammers from their beloved zombies and proxies, then going along the nofollow lines, and combining that with contextual smartness and most importantly booby trapping them inside the HTML code. All of these help eliminate spam.<br />
(I use all these techniques on my blog and a few cute other tricks and the results have been very impressive so far) Sadly, not many people or developers are able to do this in an efficient way yet. And I&#8217;m afraid the same issues with emails are just waiting to be translated to comment spam.<br />
Couple of noteworthy projects. Project Honeypot, actually tracks, captures and provides help for people who want to look up spammers. Very noble idea. And &#8220;Stop forum spam&#8221; (I think) another very interesting endeavour to stop these spammers.<br />
One day I will share my list too <img src='http://www.za3tar.net/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
]]></content:encoded>
	</item>
	<item>
		<title>By: za3tar</title>
		<link>http://www.za3tar.net/2008/04/19/recaptcha/comment-page-1/#comment-1682</link>
		<dc:creator>za3tar</dc:creator>
		<pubDate>Sun, 20 Apr 2008 04:54:16 +0000</pubDate>
		<guid isPermaLink="false">http://www.za3tar.net/?p=216#comment-1682</guid>
		<description>&lt;b&gt;Qwaider:&lt;/b&gt; Yeah you are right. I guess with reCaptchas the words are limited to those of the English dictionary, and thus with &lt;u&gt;lots&lt;/u&gt; of time and effort one can enumerate all possible images and their answers. But I guess even if a well funded group of spammers does that, then their efforts would have actually helped digitize alot of books :-) . But yeah i agree with you. Captchas in general treat the symptom rather than the cause. Thus they should not be considered as THE answer for spam, but rather as a temporary solution. A true solution would fight the problem at the source.

&lt;b&gt;Ruby:&lt;/b&gt; Thanks :-)</description>
		<content:encoded><![CDATA[<p><b>Qwaider:</b> Yeah you are right. I guess with reCaptchas the words are limited to those of the English dictionary, and thus with <u>lots</u> of time and effort one can enumerate all possible images and their answers. But I guess even if a well funded group of spammers does that, then their efforts would have actually helped digitize alot of books <img src='http://www.za3tar.net/wp-includes/images/smilies/icon_smile.gif' alt=':-)' class='wp-smiley' />  . But yeah i agree with you. Captchas in general treat the symptom rather than the cause. Thus they should not be considered as THE answer for spam, but rather as a temporary solution. A true solution would fight the problem at the source.</p>
<p><b>Ruby:</b> Thanks <img src='http://www.za3tar.net/wp-includes/images/smilies/icon_smile.gif' alt=':-)' class='wp-smiley' /> </p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Ruby</title>
		<link>http://www.za3tar.net/2008/04/19/recaptcha/comment-page-1/#comment-1681</link>
		<dc:creator>Ruby</dc:creator>
		<pubDate>Sun, 20 Apr 2008 02:43:45 +0000</pubDate>
		<guid isPermaLink="false">http://www.za3tar.net/?p=216#comment-1681</guid>
		<description>Thanks for the heads up--interesting concept.</description>
		<content:encoded><![CDATA[<p>Thanks for the heads up&#8211;interesting concept.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Qwaider قويدر</title>
		<link>http://www.za3tar.net/2008/04/19/recaptcha/comment-page-1/#comment-1680</link>
		<dc:creator>Qwaider قويدر</dc:creator>
		<pubDate>Sat, 19 Apr 2008 19:11:44 +0000</pubDate>
		<guid isPermaLink="false">http://www.za3tar.net/?p=216#comment-1680</guid>
		<description>That&#039;s the extreme case that you&#039;re talking about. You can&#039;t use words like &quot;I&quot;, &quot;me&quot; or &quot;SlkjuXkuerSSFSJHFLdjh&quot; in any captcha. Most likely the captchas are going to be like the words I have below &quot;notes&quot; and &quot;mercy&quot;
Just like there are databases for, say MD5 hash strings being used by hackers all over the world. It&#039;s not really far fetched to create a database for images. Or the better choice, create more intelligent OCR. It&#039;s obvious that these people have the means, resources, and the motives. It will happen, there&#039;s no escaping it. It&#039;s just  matter of time.</description>
		<content:encoded><![CDATA[<p>That&#8217;s the extreme case that you&#8217;re talking about. You can&#8217;t use words like &#8220;I&#8221;, &#8220;me&#8221; or &#8220;SlkjuXkuerSSFSJHFLdjh&#8221; in any captcha. Most likely the captchas are going to be like the words I have below &#8220;notes&#8221; and &#8220;mercy&#8221;<br />
Just like there are databases for, say MD5 hash strings being used by hackers all over the world. It&#8217;s not really far fetched to create a database for images. Or the better choice, create more intelligent OCR. It&#8217;s obvious that these people have the means, resources, and the motives. It will happen, there&#8217;s no escaping it. It&#8217;s just  matter of time.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: za3tar</title>
		<link>http://www.za3tar.net/2008/04/19/recaptcha/comment-page-1/#comment-1679</link>
		<dc:creator>za3tar</dc:creator>
		<pubDate>Sat, 19 Apr 2008 18:34:13 +0000</pubDate>
		<guid isPermaLink="false">http://www.za3tar.net/?p=216#comment-1679</guid>
		<description>&lt;b&gt;alajnabiya, Dandoon:&lt;/b&gt; Thanks.

&lt;b&gt;Qwaider:&lt;/b&gt; Yeah, Captchas are not the ultimate solution, but they are something. Actually Luis talked about tracking &quot;Captchas sweat-shops&quot; were people were payed money to sit all day and solve Captchas. And his solution was simple. Since these spammers can only type a certain number of words per minutes, for the spammers ip address, they would just send them longer and longer captchas to solve :-). In reCaptcha that just meant that the spammers are actually helping more in digitizing books. So they are using them for a humanitarian cause :-)

However, i don&#039;t think that spammers are capable of solving all possible captcha images and storing them in a a database. Assume that the captchas length ranges from 3 to 7 characters over numbers, small case letters, and capitalized letters. That gives us more than 4 x 10^12 possible unique strings, and imagine that each string can be created into about a hundred unique Captchas, then that is a total of about 4 x 10^14 unique captcha images and their solutions. Spammers will have to spend a ton of time and effort to enumerate all captchas.</description>
		<content:encoded><![CDATA[<p><b>alajnabiya, Dandoon:</b> Thanks.</p>
<p><b>Qwaider:</b> Yeah, Captchas are not the ultimate solution, but they are something. Actually Luis talked about tracking &#8220;Captchas sweat-shops&#8221; were people were payed money to sit all day and solve Captchas. And his solution was simple. Since these spammers can only type a certain number of words per minutes, for the spammers ip address, they would just send them longer and longer captchas to solve <img src='http://www.za3tar.net/wp-includes/images/smilies/icon_smile.gif' alt=':-)' class='wp-smiley' /> . In reCaptcha that just meant that the spammers are actually helping more in digitizing books. So they are using them for a humanitarian cause <img src='http://www.za3tar.net/wp-includes/images/smilies/icon_smile.gif' alt=':-)' class='wp-smiley' /> </p>
<p>However, i don&#8217;t think that spammers are capable of solving all possible captcha images and storing them in a a database. Assume that the captchas length ranges from 3 to 7 characters over numbers, small case letters, and capitalized letters. That gives us more than 4 x 10^12 possible unique strings, and imagine that each string can be created into about a hundred unique Captchas, then that is a total of about 4 x 10^14 unique captcha images and their solutions. Spammers will have to spend a ton of time and effort to enumerate all captchas.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Qwaider قويدر</title>
		<link>http://www.za3tar.net/2008/04/19/recaptcha/comment-page-1/#comment-1677</link>
		<dc:creator>Qwaider قويدر</dc:creator>
		<pubDate>Sat, 19 Apr 2008 17:21:12 +0000</pubDate>
		<guid isPermaLink="false">http://www.za3tar.net/?p=216#comment-1677</guid>
		<description>I&#039;m not really a big fan of Captchas, proponents have solved all the issues of accessibility ...etc
But it&#039;s only a  matter of time until these get broken too. There&#039;s a lot of research on computer applications breaking other computer applications. It will eventually be broken
What spammers are resorting to these days is another very simple method. Grab the image from your captcha, present to to people in exchange for porn, store the results in a database and done! The whole thing is going to crumble sooner or later because it&#039;s based on a faulty premise
&quot;Computer generated image the the computer can&#039;t understand&quot;
I think everyone needs to get a little bit more intelligent, and deprive the spammers from their sources. Akesmet are doing a great job. Others have similar initiatives (I keep a database that is 6 times larger than Akesmet specifically for this problem) That&#039;s why I get so little spam even though I&#039;m just like everyone else get targeted by hundreds of thousands of spam attempts

And yeah, Captchas suck! They&#039;re ugly, they&#039;re in your face, and they annoy the hell out of people</description>
		<content:encoded><![CDATA[<p>I&#8217;m not really a big fan of Captchas, proponents have solved all the issues of accessibility &#8230;etc<br />
But it&#8217;s only a  matter of time until these get broken too. There&#8217;s a lot of research on computer applications breaking other computer applications. It will eventually be broken<br />
What spammers are resorting to these days is another very simple method. Grab the image from your captcha, present to to people in exchange for porn, store the results in a database and done! The whole thing is going to crumble sooner or later because it&#8217;s based on a faulty premise<br />
&#8220;Computer generated image the the computer can&#8217;t understand&#8221;<br />
I think everyone needs to get a little bit more intelligent, and deprive the spammers from their sources. Akesmet are doing a great job. Others have similar initiatives (I keep a database that is 6 times larger than Akesmet specifically for this problem) That&#8217;s why I get so little spam even though I&#8217;m just like everyone else get targeted by hundreds of thousands of spam attempts</p>
<p>And yeah, Captchas suck! They&#8217;re ugly, they&#8217;re in your face, and they annoy the hell out of people</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Dandoon</title>
		<link>http://www.za3tar.net/2008/04/19/recaptcha/comment-page-1/#comment-1675</link>
		<dc:creator>Dandoon</dc:creator>
		<pubDate>Sat, 19 Apr 2008 05:41:01 +0000</pubDate>
		<guid isPermaLink="false">http://www.za3tar.net/?p=216#comment-1675</guid>
		<description>That was educational....:)</description>
		<content:encoded><![CDATA[<p>That was educational&#8230;.:)</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: alajnabiya</title>
		<link>http://www.za3tar.net/2008/04/19/recaptcha/comment-page-1/#comment-1673</link>
		<dc:creator>alajnabiya</dc:creator>
		<pubDate>Sat, 19 Apr 2008 03:43:03 +0000</pubDate>
		<guid isPermaLink="false">http://www.za3tar.net/?p=216#comment-1673</guid>
		<description>Cool idea. I hope Blogger adopts it soon.</description>
		<content:encoded><![CDATA[<p>Cool idea. I hope Blogger adopts it soon.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: za3tar</title>
		<link>http://www.za3tar.net/2008/04/19/recaptcha/comment-page-1/#comment-1672</link>
		<dc:creator>za3tar</dc:creator>
		<pubDate>Sat, 19 Apr 2008 02:59:07 +0000</pubDate>
		<guid isPermaLink="false">http://www.za3tar.net/?p=216#comment-1672</guid>
		<description>... and it works :-)</description>
		<content:encoded><![CDATA[<p>&#8230; and it works <img src='http://www.za3tar.net/wp-includes/images/smilies/icon_smile.gif' alt=':-)' class='wp-smiley' /> </p>
]]></content:encoded>
	</item>
</channel>
</rss>
