Go Back   vb.org Archive > Community Discussions > Modification Requests/Questions (Unpaid)
FAQ Community Calendar Today's Posts Search

Reply
 
Thread Tools Display Modes
  #1  
Old 09-29-2004, 05:08 AM
Illuvatar's Avatar
Illuvatar Illuvatar is offline
 
Join Date: Apr 2002
Location: So. Cal
Posts: 70
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default Email Exploits using "Nobody" fix?

We've been getting exploited by folks sending spam as us (and some pretty serious ones too..like that Paypal thing pfbbt) using "Return-Path: <nobody@valinor.warofthering.net>", which we can prevent at the server level by not allowing mail to be sent from "Nobody"

The problem is that VB uses this for all off it's notifications, and when blocked, the notifies to not go out period.

My question is....and I really hope that this can be done....is can the VB code be modified so that the return path uses a valid email address to it's system..like Illuvatar@warofthering.net which is the webmaster email in the admin panel.

I really don't like getting threatned with legal action because of this, and I also don't want to stop my users from taking full advantage of the boards, so if anybody else has run into this and could help me out, it would sure help me out!

Thanks!

PS....this is the same post that I made over at vb.com and they said that VB can be hacked "slightly" to use SMTP for the mail, but that they of course cannot support it.

So....I'm posting it here...hehe......

Can anyone help a fella out? :ermm:
Reply With Quote
  #2  
Old 09-29-2004, 11:25 AM
Zachery's Avatar
Zachery Zachery is offline
 
Join Date: Jul 2002
Location: Ontario, Canada
Posts: 11,440
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

Quote:
Originally Posted by Illuvatar
We've been getting exploited by folks sending spam as us (and some pretty serious ones too..like that Paypal thing pfbbt) using "Return-Path: <nobody@valinor.warofthering.net>", which we can prevent at the server level by not allowing mail to be sent from "Nobody"

The problem is that VB uses this for all off it's notifications, and when blocked, the notifies to not go out period.

My question is....and I really hope that this can be done....is can the VB code be modified so that the return path uses a valid email address to it's system..like Illuvatar@warofthering.net which is the webmaster email in the admin panel.

I really don't like getting threatned with legal action because of this, and I also don't want to stop my users from taking full advantage of the boards, so if anybody else has run into this and could help me out, it would sure help me out!

Thanks!

PS....this is the same post that I made over at vb.com and they said that VB can be hacked "slightly" to use SMTP for the mail, but that they of course cannot support it.

So....I'm posting it here...hehe......

Can anyone help a fella out? :ermm:
https://vborg.vbsupport.ru/showthread.php?t=67294

Reply With Quote
  #3  
Old 09-29-2004, 01:26 PM
Illuvatar's Avatar
Illuvatar Illuvatar is offline
 
Join Date: Apr 2002
Location: So. Cal
Posts: 70
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

Quote:
Originally Posted by Zachery
Thanks Zach!
Reply With Quote
Reply


Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump


All times are GMT. The time now is 10:39 AM.


Powered by vBulletin® Version 3.8.12 by vBS
Copyright ©2000 - 2024, vBulletin Solutions Inc.
X vBulletin 3.8.12 by vBS Debug Information
  • Page Generation 0.08856 seconds
  • Memory Usage 2,180KB
  • Queries Executed 11 (?)
More Information
Template Usage:
  • (1)SHOWTHREAD
  • (1)ad_footer_end
  • (1)ad_footer_start
  • (1)ad_header_end
  • (1)ad_header_logo
  • (1)ad_navbar_below
  • (1)ad_showthread_beforeqr
  • (1)ad_showthread_firstpost
  • (1)ad_showthread_firstpost_sig
  • (1)ad_showthread_firstpost_start
  • (2)bbcode_quote
  • (1)footer
  • (1)forumjump
  • (1)forumrules
  • (1)gobutton
  • (1)header
  • (1)headinclude
  • (1)navbar
  • (3)navbar_link
  • (120)option
  • (3)post_thanks_box
  • (3)post_thanks_button
  • (1)post_thanks_javascript
  • (1)post_thanks_navbar_search
  • (3)post_thanks_postbit_info
  • (3)postbit
  • (3)postbit_onlinestatus
  • (3)postbit_wrapper
  • (1)spacer_close
  • (1)spacer_open
  • (1)tagbit_wrapper 

Phrase Groups Available:
  • global
  • inlinemod
  • postbit
  • posting
  • reputationlevel
  • showthread
Included Files:
  • ./showthread.php
  • ./global.php
  • ./includes/init.php
  • ./includes/class_core.php
  • ./includes/config.php
  • ./includes/functions.php
  • ./includes/class_hook.php
  • ./includes/modsystem_functions.php
  • ./includes/functions_bigthree.php
  • ./includes/class_postbit.php
  • ./includes/class_bbcode.php
  • ./includes/functions_reputation.php
  • ./includes/functions_post_thanks.php 

Hooks Called:
  • init_startup
  • init_startup_session_setup_start
  • init_startup_session_setup_complete
  • cache_permissions
  • fetch_threadinfo_query
  • fetch_threadinfo
  • fetch_foruminfo
  • style_fetch
  • cache_templates
  • global_start
  • parse_templates
  • global_setup_complete
  • showthread_start
  • showthread_getinfo
  • forumjump
  • showthread_post_start
  • showthread_query_postids
  • showthread_query
  • bbcode_fetch_tags
  • bbcode_create
  • showthread_postbit_create
  • postbit_factory
  • postbit_display_start
  • post_thanks_function_post_thanks_off_start
  • post_thanks_function_post_thanks_off_end
  • post_thanks_function_fetch_thanks_start
  • post_thanks_function_fetch_thanks_end
  • post_thanks_function_thanked_already_start
  • post_thanks_function_thanked_already_end
  • fetch_musername
  • postbit_imicons
  • bbcode_parse_start
  • bbcode_parse_complete_precache
  • bbcode_parse_complete
  • postbit_display_complete
  • post_thanks_function_can_thank_this_post_start
  • tag_fetchbit_complete
  • forumrules
  • navbits
  • navbits_complete
  • showthread_complete