Extend banned words to From fields etc.

Permalink Browser Info Environment
I'm trying to stop multiple messages from Crytoded and Eric Jones that seem to avoid detection by all the normal spam criteria.

I've tried adding these names and the associated site URLs and emails to the banned words list but this doesn't work.

This may be a feature suggestion unless I'm missing something obvious. Should these be detected now or is it something that would need to be added to Anti Spam master as a feature?

Type: Ticket
Status: Resolved
katalysis
View Replies:
mnakalay replied on at Permalink Reply
mnakalay
Hello,

Sorry for the late reply.

Concrete's banned words system is not the same. My understanding is it got overhauled in version 9.

Could you share the specific messages you received, so I can run some tests?

Maybe put them in a text document, so you don't get flagged here :)

Thank you
katalysis replied on at Permalink Reply 1 Attachment
katalysis
Examples attached.
mnakalay replied on at Permalink Reply
mnakalay
So I ran some tests on my own website and here's what happened:
The first message went through.
The second one was blocked because I only allowed 3 URLs in the message and there were 4.

Then I tried as you did to add words to the ban list.

Adding "Eric Jones" didn't work. Concrete doesn't do a good job with expressions, only with single words.

I then tried using "jumboleadmagnet" instead and the message got blocked.

So then I tried adding "CrytoDed" for the first message and it also got blocked.

Will that help you with that issue?

I am actually considering running my own checks on banned words because I'm not happy with concrete's. I'm still thinking about it, but it might happen soon.
katalysis replied on at Permalink Reply
katalysis
It looks as if we're having some success with this.

Just to clarify, will the banned words filter test against all fields including the email address?
mnakalay replied on at Permalink Reply
mnakalay
Yes it will.

concrete5 Environment Information

# concrete5 Version
Core Version - 8.5.9
Version Installed - 8.5.9
Database Version - 20220319043123

# Database Information
Version: 10.3.34-MariaDB
SQL Mode: STRICT_TRANS_TABLES,ERROR_FOR_DIVISION_BY_ZERO,NO_AUTO_CREATE_USER,NO_ENGINE_SUBSTITUTION

# concrete5 Packages
Afixia: SEO Redirects (1.1.3), Anti-Spammer Master (1.0.4), Image Optimizer (3.2.9), Katalysis Base (0.0.7.0.1), Katalysis SDS Theme (0.0.5.6)

# concrete5 Overrides
blocks/page_list/controller.php, blocks/page_list, blocks/core_area_layout/templates/example_layout_template.php, blocks/core_area_layout/templates, blocks/core_area_layout/form.php, blocks/core_area_layout, elements/block_area_footer.php

# concrete5 Cache Settings
Block Cache - On
Overrides Cache - On
Full Page Caching - On - If blocks on the particular page allow it.
Full Page Cache Lifetime - Every 6 hours (default setting).

# Server Software
Apache

# Server API
cgi-fcgi

# PHP Version
7.2.34

# PHP Extensions
bcmath, bz2, calendar, cgi-fcgi, Core, ctype, curl, date, dba, dom, enchant, exif, fileinfo, filter, ftp, gd, gettext, gmp, hash, iconv, imagick, imap, intl, ionCube Loader, json, ldap, libxml, mbstring, mysqli, mysqlnd, odbc, openssl, pcntl, pcre, PDO, pdo_mysql, PDO_ODBC, pdo_pgsql, pdo_sqlite, pgsql, Phar, posix, pspell, readline, redis, Reflection, session, SimpleXML, soap, sockets, sodium, SPL, sqlite3, standard, sysvmsg, sysvsem, sysvshm, tidy, tokenizer, xml, xmlreader, xmlrpc, xmlwriter, xsl, Zend OPcache, zip, zlib

# PHP Settings
max_execution_time - 600
log_errors_max_len - 1024
max_file_uploads - 20
max_input_nesting_level - 64
max_input_time - 600
max_input_vars - 1000
memory_limit - 128M
post_max_size - 128M
upload_max_filesize - 128M
ic24.api.max_timeout - 7
ldap.max_links - Unlimited
mysqli.max_links - Unlimited
mysqli.max_persistent - Unlimited
odbc.max_links - Unlimited
odbc.max_persistent - Unlimited
pcre.backtrack_limit - 1000000
pcre.recursion_limit - 100000
pgsql.max_links - Unlimited
pgsql.max_persistent - Unlimited
redis.pconnect.connection_limit - 0
session.cache_limiter - <i>no value</i>
session.gc_maxlifetime - 7200
soap.wsdl_cache_limit - 5
opcache.max_accelerated_files - 10000
opcache.max_file_size - 0
opcache.max_wasted_percentage - 5

Browser User-Agent String

Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/103.0.0.0 Safari/537.36

Hide Post Content

This will replace the post content with the message: "Content has been removed by an Administrator"

Hide Content

Request Refund

You may not request a refund that is not currently owned by you.