Jump to content

Twitter followers


Friendr

Recommended Posts

Nice look but a HUGE flaw.

 

You use an e-mail actiavation system to prevent spam users. I or anyone with a small amount of knowledge can create a tiny script that will create millions of fake users.

 

At the momment you do this;

 

Sign up page or box -> fill details in -> validate and submit -> send e-mail -> Wait for user to click link in e-mail -> everything works

 

But the way you do it is really really bad.

 

For example;

I signed up with email@email.com and managed to active my account with http://www.friendr.co.uk/activateuser.php?email=email@email.com

 

You need checksums to stop it. If you require a demo then I'll happily help.

 

All the best

PaulTheProgrammer

Link to comment
Share on other sites

This thread is more than a year old. Please don't revive it unless you have something important to add.

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Restore formatting

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.

×
×
  • Create New...

Important Information

We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.