The word "S c ri pt" is being censored out with ******. Why???

R

Rambamatic

Guest
Every time I type the word "scr i pt"....like javas c r ip t or a film or movie s c r ip t, it censors out the word.

can a mod or admin fix this please? Why is this word out?

Thanks
 
Allowing that word permits users to install malicious effects on the forum, Rambamatic.
 
I'd rather have the inconvenience of havin skript and mital removed or censored than Sherdog go down.
 
Allowing that word permits users to install malicious effects on the forum, Rambamatic.

I see. Do you mean like the tags that kept redirecting pages to other threads or the music that appeared to be attached to some threads?

I wasn't aware that you actuallly had to use the word "sc r ipt" to install a malicious scri pt.

Thanks for the info SB.
 
I think that's the reason that meta is "censored"



That's something else too.

The two things that you mentioned are annoying. Scripts can do some damage.

Like what kind of damage? I'm sorry, but I guess I just don't, from a technical standpoint, understand what is meant by a scr i pt, or understand why writing the text "scr i pt" as a word in a post could do something damaging.

Could you please explain?

Thanks
 
Like what kind of damage? I'm sorry, but I guess I just don't, from a technical standpoint, understand what is meant by a scr i pt, or understand why writing the text "scr i pt" as a word in a post could do something damaging.

Could you please explain?

Thanks

Damage as in crash and/or deface the forum or create any of a number of problems. A script is a program that can do a number of different things. Some are good and some are bad.

The worst part is, you don't even need to be a programmer in order to use the code. Malicious programs are widely available on the WWW.

Sherdog is a high profile site. Think of the number of people who post porn etc. now imagine what else these people would do given the opportunity to run scripts.

Here's a Wikipedia article on DoS attacks to give you an idea...

http://en.wikipedia.org/wiki/Denial-of-service_attack
 
I'm sorry, but I guess I just don't, from a technical standpoint, understand what is meant by a scr i pt, or understand why writing the text "scr i pt" as a word in a post could do something damaging.

Could you please explain?

Thanks

This is a simple harmless script.

<script type="text/javascript">
document.write("Hello World!")
</script>

This is how it would look if the word "script" was allowed and it would work the way it was intended. But because script (unaltered) doesn't display, the script will look like this (actually if done properly you wouldn't see the script but it would be there)...

<****** type="text/**********">
document.write("Hello World!")
</******>

This won't work.

So by eliminating the word script they are attempting to better secure the site and ensure an endless stream of MMA goodness.
 
As said, to prevent cross site scripting (XSS) , it can be used for tons of different attacks.

Things devastating to the user like cookie stealing(where the attacker gains control over your account by sending your cookie information during page requests), self replicating AJAX worms, request forgery, redirects.

There are also issues that are concerned with site security such as what if admins/mods have accounts hijacked, defacement, spam, financial issues dealing with ad replacement.

That is just a few.
 
One thing sherdog could do to help confusion is automatically edit the word and change it to scr1pt or something instead of *****.

Over at rifftrax.com, whenever you say the word "torrent" the forum automatically changes it to "porno" as a prank on people looking to illegally download their products. Pretty funny.

You might consider doing that to the word "stream."
 
Damage as in crash and/or deface the forum or create any of a number of problems. A script is a program that can do a number of different things. Some are good and some are bad.

The worst part is, you don't even need to be a programmer in order to use the code. Malicious programs are widely available on the WWW.

Sherdog is a high profile site. Think of the number of people who post porn etc. now imagine what else these people would do given the opportunity to run scripts.

Here's a Wikipedia article on DoS attacks to give you an idea...

http://en.wikipedia.org/wiki/Denial-of-service_attack


Nice. I learned something on Sherdog today.
 
Thanks for all the info, guys. I learned quite a bit.


Peace
 

Forum statistics

Threads
1,237,036
Messages
55,462,909
Members
174,786
Latest member
JoyceOuthw
Back
Top