<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>FiddyP &#187; spammer</title>
	<atom:link href="http://fiddyp.co.uk/tag/spammer/feed/" rel="self" type="application/rss+xml" />
	<link>http://fiddyp.co.uk</link>
	<description>The personal blog of Andy Bailey</description>
	<lastBuildDate>Sun, 13 May 2012 15:28:28 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.2</generator>
<xhtml:meta xmlns:xhtml="http://www.w3.org/1999/xhtml" name="robots" content="noindex" />
		<item>
		<title>Spammers use Top Commentators vulnerability to hijack top list</title>
		<link>http://fiddyp.co.uk/spammers-use-top-commentators-vulnerability-to-hijack-top-list/</link>
		<comments>http://fiddyp.co.uk/spammers-use-top-commentators-vulnerability-to-hijack-top-list/#comments</comments>
		<pubDate>Mon, 04 Feb 2008 17:14:59 +0000</pubDate>
		<dc:creator>Andy</dc:creator>
				<category><![CDATA[Blog News]]></category>
		<category><![CDATA[comments]]></category>
		<category><![CDATA[profit]]></category>
		<category><![CDATA[spam]]></category>
		<category><![CDATA[spammer]]></category>
		<category><![CDATA[top commentator]]></category>
		<category><![CDATA[Wordpress]]></category>

		<guid isPermaLink="false">http://www.fiddyp.co.uk/spammers-use-top-commentators-vulnerability-to-hijack-top-list/</guid>
		<description><![CDATA[Many thanks to Scott from UK MAC.net (a great UK site for Apple Mac&#8217;s) for sending me an email about this. He noticed that his name was number [..]]]></description>
			<content:encoded><![CDATA[<div class="tweetmeme_button" style="float: right; margin-left: 10px;">
			<a href="http://api.tweetmeme.com/share?url=http%3A%2F%2Ffiddyp.co.uk%2Fspammers-use-top-commentators-vulnerability-to-hijack-top-list%2F"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2Ffiddyp.co.uk%2Fspammers-use-top-commentators-vulnerability-to-hijack-top-list%2F&amp;source=commentluv&amp;style=normal&amp;service=bit.ly&amp;service_api=R_259b4e5679e2c431cca1f989e158bba4&amp;b=2" height="61" width="50" /><br />
			</a>
		</div>
<p><img src='http://fiddyp.co.uk/wp-content/uploads/2008/02/highwayman.jpg' alt='Your comments or your life!' /><br />
Many thanks to Scott from UK MAC.net (<a href="http://ukmac.net">a great UK site for Apple Mac&#8217;s</a>) for sending me an email about this. He noticed that his name was number 1 on the Top Commentators list on the sidebar but, his name linked to an obvious spam site.</p>
<p>I checked further and two other people had been hijacked, <a href="http://www.chenpn.com">Dearest Pelf</a> and <a href="http://d-atmosphere.com/blog">Roger</a>(who ironically, was on the list from his comments about spam comments).</p>
<p>It seems that the <a href="http://www.pfadvice.com/wordpress-plugins/show-top-commentators/">Top Commentators plugin</a> remembers the last URL used for a commentator and displays that as an anchor for their name,(it used to use the most used url, don&#8217;t know why they changed it) even after deleting and spaminating the spammers url and ip into the blacklist they still showed on the displayed list so I have decided to remove the Top Commentators plugin for now.</p>
<p>I noticed something was up the other day when I received a comment from <a href="http://psychicgeek.com/">WitchyPoo</a> but it didn&#8217;t look like her normal way of writing and it didn&#8217;t have a last blog post (from <a href="http://www.fiddyp.co.uk/commentluv-wordpress-plugin">CommentLuv</a>), the comment made mention of something in the post and the spammer came back to respond to my follow up comment. I just changed the url back to Witchypoos&#8217; site and thought nothing of it.</p>
<p>I have even noticed certain spammers now following links on to other peoples blogs from here and doing the same thing to others.</p>
<p>Be aware of this, look out for comments coming from your regular commentators and make sure they have the correct url or install CommentLuv and look out for comments without a last blog post.</p>
]]></content:encoded>
			<wfw:commentRss>http://fiddyp.co.uk/spammers-use-top-commentators-vulnerability-to-hijack-top-list/feed/</wfw:commentRss>
		<slash:comments>47</slash:comments>
		</item>
	</channel>
</rss>

