Print Page | Close Window

SECURITY UPDATE: No more URL Avatar allowed

Printed From: Progarchives.com
Category: Site News, Newbies, Help and Improvements
Forum Name: Internal news
Forum Description: Stay informed about the latest updates regarding the site
URL: http://www.progarchives.com/forum/forum_posts.asp?TID=69018
Printed Date: November 23 2024 at 13:04
Software Version: Web Wiz Forums 11.01 - http://www.webwizforums.com


Topic: SECURITY UPDATE: No more URL Avatar allowed
Posted By: M@X
Subject: SECURITY UPDATE: No more URL Avatar allowed
Date Posted: July 08 2010 at 13:34
Hi all,

For security reasons we had to remove all the avatars of members who were using a URL instead of a UPLOADED avatar.

Some AVATARs were hosted on a URL identified by GOOGLE as HARMFUL/SPYWARE so the fastest way to fix this was to blank all the avatars from external URL.

Sorry for the troubles it may cause.

Affected members will need to upload a new avatar or use one in your gallery.

Prog On

M@X




-------------
Prog On !



Replies:
Posted By: Slartibartfast
Date Posted: July 08 2010 at 13:55
I think most of us have upchucked, I mean uploaded our avatars rather than URLed. Tongue

-------------
Released date are often when it it impacted you but recorded dates are when it really happened...



Posted By: M@X
Date Posted: July 08 2010 at 13:59
^ I erased about 3000 entries. Most from old members.

-------------
Prog On !


Posted By: harmonium.ro
Date Posted: July 08 2010 at 14:19
I hope I can find my avatar again Disapprove

EDIT: done Big smile


Posted By: A Person
Date Posted: July 08 2010 at 14:25
Originally posted by harmonium.ro harmonium.ro wrote:

I hope I can find my avatar again Disapprove

EDIT: done Big smile

I can imagine all the frantic Google image searches people are making. LOL


Posted By: seventhsojourn
Date Posted: July 08 2010 at 14:43
OK, I've just signed up to Photobucket. When I try to add a jpeg image here on PA I get a security message, access denied, or some such. Help!


Posted By: harmonium.ro
Date Posted: July 08 2010 at 14:49
You need to save the photo on your computer, Chris. Then go to Member Control Panel, then to Edit Profile, and click on Avatar Upload. I highlighted it for you:



A new window will open, which will allow you to browse through your computer and pick the photo you saved:



Thumbs Up


Posted By: Snow Dog
Date Posted: July 08 2010 at 14:50
This is bad news. No more Avi for me.

-------------
http://www.last.fm/user/Snow_Dog" rel="nofollow">


Posted By: seventhsojourn
Date Posted: July 08 2010 at 14:57
^^ Alex, thank you... although I tried that twice already. OK, will try again.


Posted By: seventhsojourn
Date Posted: July 08 2010 at 14:59
Alex, you're the main man! Thumbs Up


Posted By: harmonium.ro
Date Posted: July 08 2010 at 15:01
That's strange. Do you have many pictures uploaded already? I don't know if they can be erased, maybe your allocated hosting space is used 100%...

LE: cool! Star


Posted By: seventhsojourn
Date Posted: July 08 2010 at 15:06

No, I don't think it can be that as I've just added a few pics. Anyway you seem to have the magic touch. Cheers! Tongue



Posted By: Snow Dog
Date Posted: July 08 2010 at 15:37
Originally posted by Snow Dog Snow Dog wrote:

This is bad news. No more Avi for me.

I'm fickle I guess.


-------------
http://www.last.fm/user/Snow_Dog" rel="nofollow">


Posted By: JLocke
Date Posted: July 08 2010 at 15:41
I thought I had uploaded mine, but apparently I thought wrong. 

Re-uploaded, though, and all is well. 


Posted By: Conor Fynes
Date Posted: July 08 2010 at 16:17
I didnt even know that you could URL an avatar... LOL


Posted By: Klogg
Date Posted: July 08 2010 at 20:01
Luckly I have all my cool images saved on computer, just to fill the PC with a lot of useless humor.


Posted By: Henry Plainview
Date Posted: July 08 2010 at 22:16
Oh, that's what happened. Just out of curiosity, what were the problematic websites?

-------------
if you own a sodastream i hate you


Posted By: markosherrera
Date Posted: July 09 2010 at 01:41
ok,let me see if my avatar dissapearCry

-------------
Hi progmaniacs of all the world


Posted By: AtomicCrimsonRush
Date Posted: July 09 2010 at 03:21
i would be sad if my avvy disappeared - i have become quite attached to it...

-------------


Posted By: M@X
Date Posted: July 09 2010 at 08:44
Originally posted by Henry Plainview Henry Plainview wrote:

Oh, that's what happened. Just out of curiosity, what were the problematic websites?

According to GOOGLE TOOLS, multiples, not tracable from their logs, so I decided to remove them all and only allow uploaded avatar.

Major advantages of this solution:

  1. Better page loading times since all files are from the PA server
  2. Prevent attack from wise hackers
  3. I will be able to use the avatar in the site in homepage reviews, genre reviews, artist reviews , album reviews without affecting the loading time , this will create more and more value to the avatar you use
It's a necessary step, since GOOGLE was preventing some pages of the site to be indexed , and in no time would have drop the value of the site all-together and affecting our positions in GOOGLE SEARCHES.

I can't take that chance

Again, sorry for the inconvenience.

M@X



-------------
Prog On !


Posted By: Padraic
Date Posted: July 09 2010 at 08:52
That explains it - a while back Chrome would warn me about malware when viewing some threads here.


Posted By: M@X
Date Posted: July 09 2010 at 08:55
^ You are right.

There is still the issue of SIGNATURE IMAGES hosted on another server. This may still be creating some issues. Report theses pages, I might try to find a solution for this too. Geek


-------------
Prog On !


Posted By: Epignosis
Date Posted: July 09 2010 at 08:58
I just want to say thank you, M@X, for looking after us and keeping the place (prog) rocking!  Thumbs Up  I appreciate all you do!

-------------
https://epignosis.bandcamp.com/album/a-month-of-sundays" rel="nofollow - https://epignosis.bandcamp.com/album/a-month-of-sundays


Posted By: M@X
Date Posted: July 09 2010 at 08:59
Embarrassed thanks

-------------
Prog On !


Posted By: AtomicCrimsonRush
Date Posted: July 09 2010 at 09:51
Originally posted by Epignosis Epignosis wrote:

I just want to say thank you, M@X, for looking after us and keeping the place (prog) rocking!  Thumbs Up  I appreciate all you do!
 
 
I agree with this mailto:M@x - M@x you are to be commended for the hard work you have put in to make this a safe environment. 
 
StarClapClapClapStar


-------------


Posted By: The Monodrone
Date Posted: July 09 2010 at 16:49
Yes,Thank you  mailto:M@X - M@X ! Clap 
 
And the whole time I thought it just coincidence that everyone changed their avatar on the same day I changed mine (a few days ago).  Glad I saw this thread, I was going to submit a bug/error question. Thumbs Up


-------------
    


Posted By: Henry Plainview
Date Posted: July 09 2010 at 17:53
Originally posted by M@X M@X wrote:

Originally posted by Henry Plainview Henry Plainview wrote:

Oh, that's what happened. Just out of curiosity, what were the problematic websites?

According to GOOGLE TOOLS, multiples, not tracable from their logs, so I decided to remove them all and only allow uploaded avatar.

Major advantages of this solution:

  1. Better page loading times since all files are from the PA server
  2. Prevent attack from wise hackers
  3. I will be able to use the avatar in the site in homepage reviews, genre reviews, artist reviews , album reviews without affecting the loading time , this will create more and more value to the avatar you use
It's a necessary step, since GOOGLE was preventing some pages of the site to be indexed , and in no time would have drop the value of the site all-together and affecting our positions in GOOGLE SEARCHES.

I can't take that chance

Again, sorry for the inconvenience.

M@X

It's not a big deal, I'm sure I have my avatar lying around here somewhere, I'm just too lazy to find it at the moment, I was just curious what image hosting websites even exist that are dangerous. I'm wondering if it was maybe my imgur avatar, because while I'm pretty sure imgur is safe, it's also full of porn because it doesn't censor like some other websites, so that's what may have freaked Google out.


-------------
if you own a sodastream i hate you


Posted By: SaltyJon
Date Posted: July 09 2010 at 20:45
Henry, I doubt every avatar was taken from an image hosting site either.  Some people, myself included, found our pictures on various blogs/other sorts of websites, often which hosted the images themselves.  

-------------
http://www.last.fm/user/Salty_Jon" rel="nofollow">


Posted By: WalterDigsTunes
Date Posted: July 09 2010 at 22:24
Darn it, my Zappa gif is too large to be uploaded. This new one will have to suffice for now...


Posted By: Swifty
Date Posted: July 13 2010 at 01:32
I cannot find anywhere to upload an avatar...

-------------
--
Swifty http://www.swiftys.org.uk - http://www.swiftys.org.uk


Posted By: A Person
Date Posted: July 13 2010 at 01:41
Originally posted by Swifty Swifty wrote:

I cannot find anywhere to upload an avatar...

Did you do this?

Originally posted by harmonium.ro harmonium.ro wrote:

You need to save the photo on your computer, Chris. Then go to Member Control Panel, then to Edit Profile, and click on Avatar Upload. I highlighted it for you:



A new window will open, which will allow you to browse through your computer and pick the photo you saved:



Thumbs Up



Posted By: Swifty
Date Posted: July 13 2010 at 03:19

 

Originally posted by harmonium.ro harmonium.ro wrote:

Then go to Member Control Panel, then to Edit Profile, and click on Avatar Upload.

Does anyone know how to delete entries in the Avatar Upload facility. My first attempt didn't "take" (I suspect the image dimensions were too large). If this post has my image, then my second attempt worked.



-------------
--
Swifty http://www.swiftys.org.uk - http://www.swiftys.org.uk


Posted By: harmonium.ro
Date Posted: July 13 2010 at 06:26
^ I can see your avatar. Thumbs Up I also wonder how to delete older avatars that I uploaded, but I don't know how. Maybe M@x can help us with that?


Posted By: Snow Dog
Date Posted: July 13 2010 at 06:38
Its easy, go to file manager and delete the pics you want.

It's the last tab in your members Control Panel.


-------------
http://www.last.fm/user/Snow_Dog" rel="nofollow">


Posted By: harmonium.ro
Date Posted: July 13 2010 at 06:54
^ Thanks!


Posted By: A Person
Date Posted: July 13 2010 at 10:17
Originally posted by harmonium.ro harmonium.ro wrote:

^ Thanks!

Yeah thanks, I can't believe I missed that. Embarrassed

So the file manager allows you to upload larger images than the avatar upload page?


Posted By: paganinio
Date Posted: July 14 2010 at 20:51

does this thread really need to be pinned on every page?Ouch

And there are a large number of people who almost never read pinned threads.



-------------


Posted By: M@X
Date Posted: July 15 2010 at 07:02
^ not anymore, will remove it , thanks for reporting.

-------------
Prog On !


Posted By: The-time-is-now
Date Posted: July 29 2010 at 08:13
I took advantage of this to change my avatar.

-------------


One of my best achievements in life was to find this picture :D


Posted By: Vibrationbaby
Date Posted: July 29 2010 at 15:05
My avatar is an evil Australian dog who used to guard our F-111s. 

-------------
                


Posted By: M@X
Date Posted: November 25 2010 at 07:22
I forgot to block the URL: Avatar with the new upgrade of the forum. So , again, no AVATAR from URL will be allowed (since June 2010)

I will re-implement it and fix the avatar selection problem.




-------------
Prog On !


Posted By: M@X
Date Posted: November 25 2010 at 09:37
FIXED


URL avatar are not allowed anymore. I will have to replace them with "blank" you'll have to upload or select a new one.

Uploads selection is now working, it was a bug in the WWF 9.69 upgrade code.

Confused


-------------
Prog On !


Posted By: Snow Dog
Date Posted: November 25 2010 at 09:43
This update has kept you busy M@X.

-------------
http://www.last.fm/user/Snow_Dog" rel="nofollow">


Posted By: M@X
Date Posted: November 25 2010 at 09:43
Very , and I am not very happy Dead

-------------
Prog On !


Posted By: Snow Dog
Date Posted: November 25 2010 at 09:44
I'm not surprised. An update should work at least. Or so you'd think.

-------------
http://www.last.fm/user/Snow_Dog" rel="nofollow">


Posted By: M@X
Date Posted: November 25 2010 at 09:45
I must tell that the server is more busy than ever, you know, everything happen in the same time, MURPHY's LAW.

I am slowly taking control of the situation, but I feel more confident now than 3 days ago

Please report issues related to the avatar uploads here. Thanks


-------------
Prog On !


Posted By: Snow Dog
Date Posted: November 25 2010 at 09:46
Will do.Thumbs Up

-------------
http://www.last.fm/user/Snow_Dog" rel="nofollow">



Print Page | Close Window

Forum Software by Web Wiz Forums® version 11.01 - http://www.webwizforums.com
Copyright ©2001-2014 Web Wiz Ltd. - http://www.webwiz.co.uk