Big Medium and Comment Spam

By Deane Barker on March 30, 2007

Seven Habits of Highly Effective Spambot Hunters: Josh Clark is doing some crazy fun stuff to counter comment spammers on Big Medium. I love it.

Big Medium counters this by covering its tracks, never using the same field names twice. Every time you visit the page, all of the field names change. The field names are MD5 hashes of the page’s slug name, its database creation date and a server secret. A semi-obfuscated timestamp is mashed with this field name, creating a 50-digit field name that changes every second.

If the correct combination of field names are not received, the form submission is discarded.

