Home U.S. Coin Forum
Options

I have isolated the dreaded BLOCKED post bug

dcarrdcarr Posts: 9,058 ✭✭✭✭✭
* and .in.

Substitute a single or double quote for the asterisk and a post will be blocked if it contains the above text or a permutation of it.

Comments

  • MonsterCoinzMonsterCoinz Posts: 1,518 ✭✭✭✭✭
    I mentioned another character in an older post, but I can't find it now.
    www.MonsterCoinz.com | My Toned Showcase

    Check out my iPhone app SlabReader!
  • Aegis3Aegis3 Posts: 2,912 ✭✭✭
    Hmm. ' and .in.
    --

    Ed. S.

    (EJS)
  • dcarrdcarr Posts: 9,058 ✭✭✭✭✭
    Originally posted by: Aegis3
    Hmm. * and .in.


    It will not allow me to even quote your post without manually editing the offending portion in your quote.
  • lkeigwinlkeigwin Posts: 16,893 ✭✭✭✭✭
    You guys need to stop talking dirty.

    Lance.
  • dcarrdcarr Posts: 9,058 ✭✭✭✭✭
    Originally posted by: lkeigwin
    You guys need to stop talking dirty.
    Lance.


    image

    Here is the original actual-use permutation that caused a blockage when I tried to post it (quotation marks around "market" removed so that I can post it here):

    Only the market and collectors in general can decide that.

    I had written a medium-length post and decided to save it in Notepad before posting.
    When the posting attempt was blocked, I tried removing portions of the text to find the offending portion. It distilled down as shown in the first post of this thread.

  • lordmarcovanlordmarcovan Posts: 43,760 ✭✭✭✭✭
    I get blocked when there is a caret symbol (greater than/less than symbol) in a post, apparently because the forums think I am trying to post HTML.



    The crazy thing is that if you (or at least I) use the highlight feature and then later go back to edit, it will ADD a random caret symbol in there near the highlight tags, so the edit won't work until I delete that!

    Explore collections of lordmarcovan on CollecOnline, management, safe-keeping, sharing and valuation solution for art piece and collectibles.
  • keetskeets Posts: 25,351 ✭✭✭✭✭
    I have never been blocked trying to do anything since the new software was installed.
  • LakesammmanLakesammman Posts: 17,453 ✭✭✭✭✭
    "and .in."

    "*and .in."



    What am I doing wrong??
    "My friends who see my collection sometimes ask what something costs. I tell them and they are in awe at my stupidity." (Baccaruda, 12/03).I find it hard to believe that he (Trump) rushed to some hotel to meet girls of loose morals, although ours are undoubtedly the best in the world. (Putin 1/17) Gone but not forgotten. IGWT, Speedy, Bear, BigE, HokieFore, John Burns, Russ, TahoeDale, Dahlonega, Astrorat, Stewart Blay, Oldhoopster, Broadstruck, Ricko, Big Moose, Cardinal.
  • dcarrdcarr Posts: 9,058 ✭✭✭✭✭
    Originally posted by: Lakesammman
    "and .in."
    "*and .in."

    What am I doing wrong??


    I can't post the exact text string because it won't let me.
    But somehow Aegis3 was able to post it.
    Try quoting that post and see it if lets you (I get "blocked" message if I try that).

  • messydeskmessydesk Posts: 20,279 ✭✭✭✭✭
    Is this like those Facebook gullibility tests where you're supposed to reply with only the number 7 and then see something magical happen?



    Edit: Actually, what I've been blocked by a couple times is trying to use the degree symbol (alt+0167). I wonder if malicious SQL injection is also blocked.
  • dcarrdcarr Posts: 9,058 ✭✭✭✭✭
    Ok, here are screen captures of what happens.


    First I click the "Reply" button to create a forum post. And then I type this:

    image


    When I then click on the "Reply to Topic" button, this is what I see (and the text I typed is lost):

    image
  • messydeskmessydesk Posts: 20,279 ✭✭✭✭✭
    Just tested some common malicious SQL injection hacks, and they're blocked.
  • keetskeets Posts: 25,351 ✭✭✭✭✭
    Dan, why would you want to type that?? it seems non-sensical.
  • rickoricko Posts: 98,724 ✭✭✭✭✭
    I have never had that problem.... I guess my posts are all pretty basic...although I have used quotes on occasion. Cheers, RickO
  • messydeskmessydesk Posts: 20,279 ✭✭✭✭✭
    Originally posted by: keets

    Dan, why would you want to type that?? it seems non-sensical.


    You'd want to type that if you're trying to cause trouble.



    SQL Injection



  • dcarrdcarr Posts: 9,058 ✭✭✭✭✭
    Originally posted by: keets
    Dan, why would you want to type that?? it seems non-sensical.


    I had a normal post that was blocked. But I also had the text saved via Notepad.
    So I tried posting different parts of it until I found the single sentence that caused the blockage.
    Then I tried removing and substituting characters from that sentence until I had it distilled down to the fewest and simplest form I could find that cased a blockage.

    Here are screen shots of that original seemingly-normal sentence getting blocked:


    image


    image

  • keetskeets Posts: 25,351 ✭✭✭✭✭
    ' and

  • keetskeets Posts: 25,351 ✭✭✭✭✭
    ' and .
  • keetskeets Posts: 25,351 ✭✭✭✭✭
    ' and .in
  • keetskeets Posts: 25,351 ✭✭✭✭✭
    ' and in.
  • keetskeets Posts: 25,351 ✭✭✭✭✭
    ' and .on.
  • keetskeets Posts: 25,351 ✭✭✭✭✭
    yeah, that's pretty weird. I can type all of the stuff that's listed except for .in.
  • TwoSides2aCoinTwoSides2aCoin Posts: 44,556 ✭✭✭✭✭
    I have a hard enough time with the English language. You're not making it any easier. Maybe you could see a doctor about that blockage and bug.
  • TwoSides2aCoinTwoSides2aCoin Posts: 44,556 ✭✭✭✭✭
    Originally posted by: dcarr

    * and .in.



    Substitute a single or double quote for the asterisk and a post will be blocked if it contains the above text or a permutation of it.







    Discovery is interesting, by the way. Some commands are more powerful than others'
  • LakesammmanLakesammman Posts: 17,453 ✭✭✭✭✭
    'and .in.
    "My friends who see my collection sometimes ask what something costs. I tell them and they are in awe at my stupidity." (Baccaruda, 12/03).I find it hard to believe that he (Trump) rushed to some hotel to meet girls of loose morals, although ours are undoubtedly the best in the world. (Putin 1/17) Gone but not forgotten. IGWT, Speedy, Bear, BigE, HokieFore, John Burns, Russ, TahoeDale, Dahlonega, Astrorat, Stewart Blay, Oldhoopster, Broadstruck, Ricko, Big Moose, Cardinal.
  • LakesammmanLakesammman Posts: 17,453 ✭✭✭✭✭
    If I put a space between " ' " and "and", it's blocked. Strange......
    "My friends who see my collection sometimes ask what something costs. I tell them and they are in awe at my stupidity." (Baccaruda, 12/03).I find it hard to believe that he (Trump) rushed to some hotel to meet girls of loose morals, although ours are undoubtedly the best in the world. (Putin 1/17) Gone but not forgotten. IGWT, Speedy, Bear, BigE, HokieFore, John Burns, Russ, TahoeDale, Dahlonega, Astrorat, Stewart Blay, Oldhoopster, Broadstruck, Ricko, Big Moose, Cardinal.
  • dcarrdcarr Posts: 9,058 ✭✭✭✭✭
    Originally posted by: Lakesammman
    If I put a space between " ' " and "and", it's blocked. Strange......


    There are probably many permutations of this that get blocked.
    Like my full (normal) sentence I showed earlier in this thread.

    The problem is, an innocuous combination of characters could be contained in a lengthy composition. When the user attempts to post it, it is blocked and all the text they typed is lost.

    So the longer your composition, the more time and effort it takes to write it, and the more likely that it will be blocked and totally lost on a posting attempt.

  • keetskeets Posts: 25,351 ✭✭✭✭✭
    the real problem appears to be the improper use of an apostrophe, possibly when used in conjunction with periods bracketing a word. not being very tech savvy or knowing anything about writing code, could it be something linked to bad code or hacking that means the current program automatically blocks it??
  • dcarrdcarr Posts: 9,058 ✭✭✭✭✭
    Originally posted by: keets
    the real problem appears to be the improper use of an apostrophe, possibly when used in conjunction with periods bracketing a word. not being very tech savvy or knowing anything about writing code, could it be something linked to bad code or hacking that means the current program automatically blocks it??


    Here is a sentence which is blocked on a post attempt, but it does not contain any improper words or improper punctuation:

    image


    image

  • dcarrdcarr Posts: 9,058 ✭✭✭✭✭
    Originally posted by: keets
    the real problem appears to be the improper use of an apostrophe, possibly when used in conjunction with periods bracketing a word. not being very tech savvy or knowing anything about writing code, could it be something linked to bad code or hacking that means the current program automatically blocks it??


    Periods bracketing a word are not necessary.
    The first period can be replaced with just about any character and it is still blocked.
    Like this:

    image


    image

  • messydeskmessydesk Posts: 20,279 ✭✭✭✭✭
    Originally posted by: keets

    the real problem appears to be the improper use of an apostrophe, possibly when used in conjunction with periods bracketing a word. not being very tech savvy or knowing anything about writing code, could it be something linked to bad code or hacking that means the current program automatically blocks it??


    I'll try again.



    SQL Injection



    Edited to fix link



  • keetskeets Posts: 25,351 ✭✭✭✭✭
    John, the link needs to be fixed.
  • jerseycat101jerseycat101 Posts: 1,360 ✭✭✭✭✭
    Looks like the boards are implementing some sort of XSS scripting prevention.
  • messydeskmessydesk Posts: 20,279 ✭✭✭✭✭
    Originally posted by: keets

    John, the link needs to be fixed.


    That was weird. Link has been fixed.

Leave a Comment

BoldItalicStrikethroughOrdered listUnordered list
Emoji
Image
Align leftAlign centerAlign rightToggle HTML viewToggle full pageToggle lights
Drop image/file