iEntry 10th Anniversary Forum Rules Search
WebProWorld
Register FAQ Calendar Mark Forums Read
Web Programming Discussion Forum Working with an API? Developing a plugin? Writing a Mod or script for your favorite blog, Web 2.0 site or Forum? Welcome.

Share Thread: & Tags

Share Thread:

Reply
 
LinkBack Thread Tools Display Modes
  #1 (permalink)  
Old 06-25-2007, 03:24 PM
dharrison's Avatar
WebProWorld 1,000+ Club
WebProWorld MVP
 
Join Date: May 2005
Location: Essex, UK
Posts: 1,289
dharrison RepRank 4dharrison RepRank 4dharrison RepRank 4
Default Random Code in CGI/Perl script

Please help

I have a client who has to use a CGI/perl form script for his online enquiry form at Quality Matters He absoltely cannot use PHP as his main email address is AOL and it comes up as gobbledygook.

Anyway, my question is: Can anyone recommend a good security feature (eg. random code/image) that can make this form any more secure?

I have tried figlet but its a bit confusing to set up.

Any help will be gratefully received.

TIA
__________________
Deb Harrison
DVH Design
Essex Web Design
Reply With Quote
  #2 (permalink)  
Old 06-25-2007, 06:08 PM
RegDCP's Avatar
WebProWorld Pro
 
Join Date: Oct 2005
Location: Courtenay BC
Posts: 222
RegDCP RepRank 0
Default Re: Random Code in CGI/Perl script

After a lot of research into the same problem I came to the conclusion that PHP is the only way to go.

His AOL address should not come up as garbage but an email address @quality-matters.com could be used for the PHP, and redirected to his AOL address through his hosting server's admin, if needs be.

Reg
__________________
http://DotCom-Productions.com Website Management
http://0Grief.com Budget PHP/MySQL hosting
Reply With Quote
  #3 (permalink)  
Old 06-25-2007, 06:51 PM
dharrison's Avatar
WebProWorld 1,000+ Club
WebProWorld MVP
 
Join Date: May 2005
Location: Essex, UK
Posts: 1,289
dharrison RepRank 4dharrison RepRank 4dharrison RepRank 4
Default Re: Random Code in CGI/Perl script

Thanks Reg

I have managed to get the figlet function working so I shall see how that goes.

It not then changes may have to be made.

I agree about the PHP though and give you kudos though.
__________________
Deb Harrison
DVH Design
Essex Web Design
Reply With Quote
  #4 (permalink)  
Old 06-26-2007, 12:34 AM
WebProWorld Member
 
Join Date: Sep 2006
Location: San Jose
Posts: 26
scotthai RepRank 0
Default Re: Random Code in CGI/Perl script

Hey There,
You posted a very interesting topic, although you have already finished the script from figit, or whatever it was, you just handled a real difficult topic. I have been able to use PHP to write the security images, however, I have also been able to use remote JavaScript, which is obfuscated to the robot or SPAM bot, and this sets a cookie that I am able to pick up apon after the script has gone to the CGI bin. However, a new and better technique is to use an AJAX based email form, if you use deep rooting, ex. ../../../forms/email.html, then pop the AJAX email form over the page by using an empty div and writing the innerHTML via Javascript, to pull the email page into the original page, the robot will get confused. It won't be able to send an email via your form, because it won't be able to find the form, which in essence is in an empty div in your html. This is a flawless technique, until the robots get smarter and begin to follow AJAX paths. However, going back to the obfiscation, if you use a javascript obfiscation program prior to the launch of the page which is making the AJAX call to the email form, you will undoubtedly never become prey for the SPAMbots again, and AJAX is fun to use as well.

This was long and confusing. I just wanted to say that their is another non-PHP technique as well!!

-Scott
San Jose
Reply With Quote
  #5 (permalink)  
Old 06-26-2007, 06:17 PM
dharrison's Avatar
WebProWorld 1,000+ Club
WebProWorld MVP
 
Join Date: May 2005
Location: Essex, UK
Posts: 1,289
dharrison RepRank 4dharrison RepRank 4dharrison RepRank 4
Default Re: Random Code in CGI/Perl script

No thats good Scott. I haven't taken the time to learn AJAX yet. Its on my list.

Are there any good tutorials you would recommend?
__________________
Deb Harrison
DVH Design
Essex Web Design
Reply With Quote
Reply

  WebProWorld > Webmaster, IT and Security Discussion > Web Programming Discussion Forum

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On


Similar Threads
Thread Thread Starter Forum Replies Last Post
java script code not working in mozilla Informer45 Web Programming Discussion Forum 1 12-28-2005 05:16 AM
When going random R2D2 Web Programming Discussion Forum 0 06-29-2005 08:31 AM
Valid Code for Bookmark Script wrmineo Web Programming Discussion Forum 10 06-18-2005 12:11 PM
www.random-plus.com random_cam Submit Your Site For Review 1 12-13-2004 08:29 AM
Random Thoughts minstrel The Castle Breakroom (General: Any Topic) 7 02-17-2004 08:42 PM


All times are GMT -4. The time now is 09:09 AM.



Search Engine Optimization by vBSEO 3.3.0