LinuxQuestions.org
Welcome to the most active Linux Forum on the web.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > LinuxQuestions.org > LQ Suggestions & Feedback
User Name
Password
LQ Suggestions & Feedback Do you have a suggestion for this site or an idea that will make the site better? This forum is for you.
PLEASE READ THIS FORUM - Information and status updates will also be posted here.

Notices


Reply
  Search this Thread
Old 07-28-2023, 09:05 AM   #16
boughtonp
Senior Member
 
Registered: Feb 2007
Location: UK
Distribution: Debian
Posts: 3,604

Rep: Reputation: 2547Reputation: 2547Reputation: 2547Reputation: 2547Reputation: 2547Reputation: 2547Reputation: 2547Reputation: 2547Reputation: 2547Reputation: 2547Reputation: 2547

Quote:
Originally Posted by fatmac View Post
I've never had a problem....
Quote:
Originally Posted by shortarcflyer View Post
I dont see what the issue is. It works for me.
Quote:
Originally Posted by frankbell View Post
I also have had no issues.
These are not useful posts. The problem has been proven to exist, even if it doesn't bite everyone.

It is sufficiently widespread to affect numerous regular posters. (We don't know how many new users it affects because most of them will just give up and go elsewhere.)

Not everyone gets the "blocked" message - some have noticed an automatic redirect, some receive a captcha challenge (and if they provide free labour to Google the message goes through), others get a block screen without a captcha (and the precise text of that message can vary), sometimes there's a completely blank screens with nothing on at all, and so on.

The precise input that triggers the block is somewhat fluid - what works one day may stop working the next. It doesn't require [code] tags to trigger, but it can be related to any of shell/PHP/SQL/JavaScript - which most often occur in code tags - because it's a flawed attempt at security, and those technologies are common attack vectors.

Those unfamiliar with SQL may be unaware that SQL is closer to natural language than other programming languages. Every now and then someone triggers the block with a perfectly normal post containing no code because it just happens to include certain keywords in a certain order.

 
Old 07-29-2023, 09:23 PM   #17
dugan
LQ Guru
 
Registered: Nov 2003
Location: Canada
Distribution: distro hopper
Posts: 11,226

Rep: Reputation: 5320Reputation: 5320Reputation: 5320Reputation: 5320Reputation: 5320Reputation: 5320Reputation: 5320Reputation: 5320Reputation: 5320Reputation: 5320Reputation: 5320
pizzipie posts a lot of Javascript and frontend code. The filter attacks those most aggressively.

Obviously, that filter should never have been activated. LinuxQuestions should be designed to secure without it, and AFAIK it is. It's ridiculous that the filter still on.

And it's especially ridiculous that it's still on for so long after it's been first reported to be a problem.

Last edited by dugan; 07-29-2023 at 10:06 PM.
 
Old 07-30-2023, 02:44 PM   #18
jeremy
root
 
Registered: Jun 2000
Distribution: Debian, Red Hat, Slackware, Fedora, Ubuntu
Posts: 13,602

Rep: Reputation: 4084Reputation: 4084Reputation: 4084Reputation: 4084Reputation: 4084Reputation: 4084Reputation: 4084Reputation: 4084Reputation: 4084Reputation: 4084Reputation: 4084
Thanks for the continued feedback. Do note that a very *very* small number of requests are impacted as a percentage of requests. That said, I understand it's frustrating when a legitimate request is blocked. I've made some additional changes today that should help.

--jeremy
 
3 members found this post helpful.
Old 07-31-2023, 04:03 AM   #19
linux-man
Member
 
Registered: Nov 2016
Location: Geneva
Distribution: native install of Parrot Home Edition 5.0 Debian (no security tools) 64 bit, KDE, 5.14.0-9parrot1,
Posts: 872

Rep: Reputation: Disabled
Quote:
Originally Posted by ChuangTzu View Post
Bit of an over-reaction for not being able to post something on a forum, don't you think?
It's not a bit of an over reaction, let's see how you would react to Cloudfare blocking you for hrs/days/weeks/months on end when you have pressing work to attend to and are stuck.His reaction is understandable.

Last edited by linux-man; 07-31-2023 at 04:08 AM.
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
VPS server got blocked because of too high load - what to do? Chris80 Linux - Server 2 12-01-2018 08:12 PM
Host is blocked because of many connection error;unblock with mysqladmin-flush-hosts jsaravana87 Linux - Server 1 11-28-2011 09:11 AM
Slackware64 13.1 blocked when suspending because of NFS irmin Linux - Software 1 01-30-2011 10:56 PM
Mod recent blocked related question (netfilter). WHO IS BLOCKED CarLost Linux - Security 6 07-29-2008 03:53 PM
cannot login because file system check fails because of bad magic number trutnev Linux - Newbie 1 03-23-2004 06:44 PM

LinuxQuestions.org > Forums > LinuxQuestions.org > LQ Suggestions & Feedback

All times are GMT -5. The time now is 09:02 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration