<?xml version="1.0" encoding="UTF-8"?>

<rss version="2.0" xmlns:blogChannel="http://backend.userland.com/blogChannelModule">

<channel>
<title>The fix isn&#x27;t very good in </title>
<link>http://www.dslreports.com/forum/r8615396</link>
<description></description>
<language>en</language>
<pubDate>Mon, 14 Dec 2009 19:36:29 EDT</pubDate>
<lastBuildDate>Mon, 14 Dec 2009 19:36:29 EDT</lastBuildDate>

<item>
<title>Re: The fix isn&#x27;t very good</title>
<link>http://www.dslreports.com/forum/remark,8615616</link>
<description><![CDATA[<A HREF="/useremail/u/251107"><b>nil</b></A> : In all fairness to Ben and Mena I don't think you can call them 'lazy' over a bad fix.. Movable Type is still a terrific tool and still free.. Hopefully they'll have a better fix soon, in the meantime, people should just remove the script altogether.  There's no true need for it. <br><SMALL>--<br>Life is too short to be <A HREF="http://www.unix-girl.com/blog/">boring</A></SMALL>]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,8615616</guid>
<pubDate>Wed, 26 Nov 2003 17:36:57 EDT</pubDate>
</item>

<item>
<title>Re: The fix isn&#x27;t very good</title>
<link>http://www.dslreports.com/forum/remark,8615514</link>
<description><![CDATA[<A HREF="/useremail/u/161242"><b>trparky</b></A> : Me too, the fix is horrible.  Basically, the fix shows that they are lazy and that they don't want to fix it the correct way.<br><SMALL>--<br>WedgeAntilles250</SMALL>]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,8615514</guid>
<pubDate>Wed, 26 Nov 2003 17:22:44 EDT</pubDate>
</item>

<item>
<title>The fix isn&#x27;t very good</title>
<link>http://www.dslreports.com/forum/remark,8615396</link>
<description><![CDATA[<A HREF="/useremail/u/1"><b>justin</b></A> : Reading the fix that movabletype.org have done .. well, it doesn't strike me as particularly good. So now they've limited the script to one target address and a short message body?<br><br>A spam-bot with a list of N movable type domain names could, in parallel, spam N people per second, even if everyone fixed their script per the recommendation. Ok that isn't as efficient as spamming NxM people per second (the original script allowed lists of people). But it is still possible.<br><br>It would be better if movabletype.org put a challenge response token into the loop, so you can't POST to it unless you have done a GET of the form, first, and a delay as well. Better still, remove the ability to enter a custom message (where the advert goes) entirely!<br><br>Or just remove the script and do not allow anon users to send links to any email address they like.]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,8615396</guid>
<pubDate>Wed, 26 Nov 2003 17:09:14 EDT</pubDate>
</item>

</channel>
</rss>
