![]() |
Cookie Stuffing Detector [Inside- What is Cookie Stuffing and Why you Should Care]
This modification will help protect your boards against cookie stuffing scams.
What is Cookie Stuffing From Wikipedia: Quote:
There are several techniques for cookie stuffing, one of which works on most vBulletin forums. I'll put the following in code tags so only licensed vB owners can read it. Code:
A user can add an [img] bbcode in a post and put an What this mod does Code:
This modification inserts some Javascript on each Import the product XML file in your Product Manager, then visit the Options group "Cookie Stuffing Detector Options". After installation, you can check if this is working by creating a post and .... Code:
including an image with an invalid URL, such as: I am planning to expand this mod to:
Tested in... (on Windows XP)
|
awesome stuff.
I heard about the cookie stuffing issues at DP and ebay. Good to see, there is a way to protect ourselves! thanks a bunch. |
This only works on bbcode that has a non image as image.
But you can use any image remotely hosted in the img tag and that img can be forced to be executed as a php file. The remote image is actually php code that sets a cookie with the affiliate code, and then sets the mime via header and returns a real image. example: http://floris.vbulletin.com/stuff/vborgtest.jpg The img above is http://floris.vbulletin.com/stuff/vborgtest.jpg[/img] which is actually a php file that sets a cookie for floris.vbcom with user 'vborgtest' hence: stuffing. This plugin doesn't seem to check for real cookie stuffing, unless I am mistaken? |
Right, except that's not really what we're talking about since there is no monetary gain in that.
Code:
The cookie stuffing we are talking about is for example: Say |
Thanks..
Installed on 3.7.3 and when I checked "Print debug output" I can't browse to any thread.. IE7 loads the thread then I get a notice can't find the page and I go to 404 I used Google Chrome and its fine and see at the buttom it says 6 of 6 posts on this page checked for cookie stuffing but why IE stuffed with the setting? Thanks |
so it just can happen if User post an image using [img] tag and that image has url ?!!
|
Gonna keep an eye on this one :D
|
Quote:
Quote:
Code:
A user can force cookies on all your visitors by linking |
Quote:
|
This sounds good, and I'm considering installing it, but one question... wouldn't this flag up vBulletin album images because the image format is something like picture.php?id= or something?
|
All times are GMT. The time now is 03:18 PM. |
Powered by vBulletin® Version 3.8.12 by vBS
Copyright ©2000 - 2025, vBulletin Solutions Inc.
X vBulletin 3.8.12 by vBS Debug Information | |
---|---|
|
|
![]() |
|
Template Usage:
Phrase Groups Available:
|
Included Files:
Hooks Called:
|