Blog spam: where is this gonna end?

Saturday Jun 24 2006

Today I got a mail from Dreamhost telling me they had to temporarily shut down this website because it was eating up way too much CPU time. I wondered why that could be because it had been running fine for months already and I hadn't made any recent changes that could result in an unusual CPU load. A quick tail -f on my http access log told me what was causing it.

Some pathetic moron with a botnet was totally HAMMERING my site with POST requests. As a matter of fact, at the moment I'm writing this post, he still is. This particular asshole was quite easy to detect and stop because I found he's flooding my site with POST requests on regular PHP pages. Of course those aren't supposed to be POSTed to at all which is why I could quickly bring my CPU usage back to an acceptable level by adding the following to all relevant PHP files:

if($_SERVER['REQUEST_METHOD'] == 'POST'){
  die();
}

Note that I wish this whole die(); thing could be implemented literally this time. What a bloody moron. What a waste of time and resources. This whole thing made me wonder where this travesty that is will end. This particular already caused my site to be taken down. This time there was an easy way to get rid of most of the load. But what if there isn't anymore?

Dark Matter Pro: a premium photoblog template.

Affiliate program available

Not just us small town bloggers

This morning I read on Elliott Back's blog that even Amazon.com is being seriously hit by spammers. Surfing on for a bit I found that Reddit has serious issues with it as well. And del.icio.us too. This whole thing makes me cringe. It makes me wonder about the future of the internet.

A while ago when I was still actively developing (now deprecated because all important features are in Pivot itself) I received reports from people who had to pay serious amounts of money to their providers due to excessive bandwidth usage caused by comment spammers and referrer spammers. Excessive bandwidth is wasted on my side as well. Luckily I've got 1.1TB to burn at Dreamhost but not everyone has this much bandwidth on his hosting package. Then there's the CPU usage. While I have a lot of bandwidth, I have to make sure I'm not using too many CPU cycles, like anyone else on a shared server. This morning the server load was about 16 when I looked which is why I can't really blame them for temporarily shutting down my site. I got back quite quickly after applying the fix I described earlier but one day, I might not.

Waste, waste and more waste

The amount of bandwidth, CPU time and man-hours to fix things on a global scale must be staggering high and continuously going up. All of this because of a bunch of fuckers (excuse my French) who feel the desperate need to promote their pathetic (often fake) prescription medicines, shady gambling sites or disgusting porn sites. Sometimes I really feel the end of the free, unregulated is near. It just can't go on. A lot of companies and people are paying LOTS of dollars for a massive amount of wasted resources. And I'm still only talking here. I'm not even mentioning the staggering amount of email spamming going on daily.

Mark my words. We'll probably have to enjoy the internet the way it is now while it lasts because if all of this continues it just can't last forever. We might very well be moving towards a totally regulated internet on which providers, owners of backbones and governments decide which traffic can pass and which traffic can't. We'll be dealing with 'preferred sites' and 'preferred networks' which might very well affect all of us. I must honestly admit that I myself have even considered blocking entire countries from certain servers because 99% of the traffic coming from them was abusive. Why? Because the crap just HAS to stop. I didn't end up blocking any countries because I feel it's not the way. It just isn't fair. Not even if only a small amount of legitimate visitors from those countries like to read my site. They should be able to. Of course they should.

Now what?

So far I haven't really seen any REAL solutions. Sure there's Akismet, there's the stuff I created for Pivot, there's tons of other anti-spam tools. None of them however stop the massive amount of wasted bandwidth and CPU resources. They prevent spam from appearing on our sites mighty fine but that just isn't enough. The amount of attacks (yes, today's spam runs closely resemble DDOS attacks) seems to be going up instead of down. 2 years ago I hardly received any attempts to spam any of my sites. Today the requests are slamming on whatever I put online, usually with multiple attempts per minute. 24/7, 365 days a year.

So what do YOU think? Is going to kill the internet as we know it eventually or is someone going to come up with a holy grail that will free the internet of this enormously heavy burden? I'm interested in your thoughts!

bookmarking

Commentary

Join the discussion! Leave a comment through the comment form below!

Got something to add to this?

Feel free to leave a comment on this site. You can use Textile and Emoticons. Your email address is only used to show a gravatar. Please stay on-topic and use common decency. Spammers will be shot in front of a live studio audience.

If you plan on posting code, use pastebin please and post a URL to the code. The comment processing doesn't deal very well with code. Sorry for the inconvenience.

Human comment spammers: don't bother posting your crap here. Comments are moderated and I won't let any of your shit through.

Remember personal info?
Yes
No

Trackbacks

If you have an interesting related post on your own site you can leave a trackback. As they say: 'a little AJAX a day keeps the spammers away' which is why you'll have to click below to generate a trackback key. The key will be valid for 15 minutes and can be used only once.

Comment spam
Marco had some uninvited guests and because of that some major issues.

...Sent on 25 June '06 - 04:47 , via MichelvanHelden.com
× ×ר ×©× × ×™×™×¨
גם אם זה עושה רעש, זה לא בהכרח נכון. והפעם, דוגמא מספר 14564332657: הבלוגר שפרסם תמונות מסך הלקוחות לכאורה ממערכת ההפעלה הבאה של אפל (לאופרד) הודה שהתמונות מזוייפות. כמו כל דבר באינטרנט, צריך להזכיר שמהצד השני הייתה השנה פסיקה בארה“ב...Sent on 26 June '06 - 07:13 , via xslf.com

 

  • Featured Links
RockySomewhere near the Orion NebulaBookalicio.usGolden Gate BridgeThames River BankJackie and mePimpin' it