Phoca Guestbook hacked

Phoca Guestbook - creating guestbooks in Joomla! CMS
ivanzuelox
Phoca Newbie
Phoca Newbie
Posts: 8
Joined: 03 Nov 2010, 00:46

Phoca Guestbook hacked

Post by ivanzuelox »

Hello, you automatically add comments to my guest book in Russian language and some commercials, this is the link of my website: http://gameschile.net/tienda/index.php? ... Itemid=218

I need help and prevent this from happening, Thanks
User avatar
Jan
Phoca Hero
Phoca Hero
Posts: 48739
Joined: 10 Nov 2007, 18:23
Location: Czech Republic
Contact:

Re: Phoca Guestbook hacked

Post by Jan »

Hi,

the best protection against spam is allowing only registered to leave a comment.


If the guestbook is for public, than:

- be sure you have the latest Phoca Guestbook version
- you have enabled all three Captcha and combination of them so if there is a spam robot, it gets everytime other type of captcha
- set a suffix for session name (in parameters)
- add IP ban or add a part of url (which is pasted as link) to Not Allowed URL Identification Words parameter:
https://www.phoca.cz/documents/3-phoca-g ... -menu-item
- check your site (this will be difficult) if it does not include some other place which is open to add an entry to database (if you look at your database, to phoca guestbook tables and you will see, the spam topics do not include the same filled values like normal topics, then it seems they were added through some other way then through Phoca Guestbook form) :idea:

Jan
If you find Phoca extensions useful, please support the project
ivanzuelox
Phoca Newbie
Phoca Newbie
Posts: 8
Joined: 03 Nov 2010, 00:46

Re: Phoca Guestbook hacked

Post by ivanzuelox »

Thanks for your help proves that tells me
Post Reply