<?xml version="1.0" encoding="UTF-8"?><!-- generator="bbPress" -->

<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
>

<channel>
<title>WordPress &#8250; Support Tag: WP-Live-Chat</title>
<link>http://wordpress.org/support/</link>
<description>WordPress &#8250; Support Tag: WP-Live-Chat</description>
<language>en</language>
<pubDate>Tue, 24 Nov 2009 05:25:51 +0000</pubDate>

<item>
<title>BondageRadio on "WP-Live-Chat"</title>
<link>http://wordpress.org/support/topic/163630#post-740413</link>
<pubDate>Tue, 22 Apr 2008 02:08:22 +0000</pubDate>
<dc:creator>BondageRadio</dc:creator>
<guid isPermaLink="false">740413@http://wordpress.org/support/</guid>
<description>&#60;p&#62;Or you could wait till the web host replaces the dead blade in the server.&#60;/p&#62;
&#60;p&#62;This plugin is a wordpress front end for the well known CGI:IRC chat client, the only information exchanged between the server and the plugin is user name, referring page and desired channel to join.&#60;/p&#62;
&#60;p&#62;We have now added the capability of staying AWAY from the Adult server and connecting to freenode.net (the same irc server Automatic uses for their chat rooms)&#60;/p&#62;
&#60;p&#62;The CGI application does still run on our servers but this can be changed by a simple code change to point the plugin at your own CGI:IRC installation and interface. The code for the proprietary interface is not included in the plugin package, it is however maintained on our server as a courtesy.&#60;/p&#62;
&#60;p&#62;MOST hosts see connecting to IRC as an additional service for which they charge extra, or as a TOS violation due to the proliferation of file sharing bots passing out warez and pr0n, so installing the CGI on your own host may result in issues.&#60;/p&#62;
&#60;p&#62;The plugin *WAS* distributed as *T-Shirt Ware* but no one seemed to like the idea that you actually got something BESIDES free software for your donation. Instead a single button sized advertisement was included in the CGI, and the donate link points to our Project Wonderful location to purchase Ad Space in the chat window, for $1 a day.
&#60;/p&#62;</description>
</item>
<item>
<title>Otto42 on "WP-Live-Chat"</title>
<link>http://wordpress.org/support/topic/163630#post-715932</link>
<pubDate>Fri, 28 Mar 2008 19:47:29 +0000</pubDate>
<dc:creator>Otto42</dc:creator>
<guid isPermaLink="false">715932@http://wordpress.org/support/</guid>
<description>&#60;p&#62;The plugin not working anymore is a valid concern. You can report that problem here: &#60;a href=&#34;http://wordpress.org/report-bugs/&#34; rel=&#34;nofollow&#34;&#62;http://wordpress.org/report-bugs/&#60;/a&#62;
&#60;/p&#62;</description>
</item>
<item>
<title>mikehelms on "WP-Live-Chat"</title>
<link>http://wordpress.org/support/topic/163630#post-715912</link>
<pubDate>Fri, 28 Mar 2008 19:22:43 +0000</pubDate>
<dc:creator>mikehelms</dc:creator>
<guid isPermaLink="false">715912@http://wordpress.org/support/</guid>
<description>&#60;p&#62;Kalessin, I agree with your points, but there's not a lot of server heavy-lifting to do with a chat client.  The data being stored is textual - and even if files were being swapped, they could simply be stored as blobs.  Nothing that a barebones Wordpress-capable server couldn't handle.&#60;/p&#62;
&#60;p&#62;The server that this plugin references isn't even active; ergo, the plugin doesn't work.&#60;/p&#62;
&#60;p&#62;I still believe that this plugin should be removed.
&#60;/p&#62;</description>
</item>
<item>
<title>Kalessin on "WP-Live-Chat"</title>
<link>http://wordpress.org/support/topic/163630#post-714977</link>
<pubDate>Thu, 27 Mar 2008 08:26:27 +0000</pubDate>
<dc:creator>Kalessin</dc:creator>
<guid isPermaLink="false">714977@http://wordpress.org/support/</guid>
<description>&#60;p&#62;There are various reasons for interacting with an external server, such as a requirement for executable code which would be too much hassle for the average WordPress user to install. There is a plugin which creates PDFs of WordPress content which uses its own servers to do the grunt work.&#60;/p&#62;
&#60;p&#62;The WP-Live-Chat plugin seems fairly upfront about where the code is and its NSFW status in the accompanying readme.&#60;/p&#62;
&#60;p&#62;I would suggest that it's up to the individual whether they want to trust this particular site with which to exchange data. I personally would not, given some tactics in use by other porn sites.&#60;/p&#62;
&#60;p&#62;My biggest concern is that the plugin is described as a &#34;mIRC web client&#34; when presumably they mean &#34;IRC web client&#34;. mIRC being the name of a popular Windows IRC client. I assume this is an honest mistake, not an attempt to capitalize on someone else's good name.
&#60;/p&#62;</description>
</item>
<item>
<title>mikehelms on "WP-Live-Chat"</title>
<link>http://wordpress.org/support/topic/163630#post-714872</link>
<pubDate>Thu, 27 Mar 2008 02:04:01 +0000</pubDate>
<dc:creator>mikehelms</dc:creator>
<guid isPermaLink="false">714872@http://wordpress.org/support/</guid>
<description>&#60;p&#62;Hello everyone,&#60;/p&#62;
&#60;p&#62;I took a look at the code for the WP-Live-Chat plugin, and it appears to be fronting data on a porn server.&#60;/p&#62;
&#60;p&#62;There's absolutely no reason that data for a plugin should be hosted externally; security concerns notwithstanding, it's certainly not the kind of development ethic we'd probably want to see in the Wordpress community.&#60;/p&#62;
&#60;p&#62;Not sure how I would go about &#34;petitioning&#34; for this plugin to be removed.&#60;/p&#62;
&#60;p&#62;Cheers,&#60;br /&#62;
-- Mike
&#60;/p&#62;</description>
</item>
<item>
<title>BondageRadio on "DDoS Attacks Take Our Site Down - The Whole Story"</title>
<link>http://wordpress.org/support/topic/148253#post-665184</link>
<pubDate>Thu, 20 Dec 2007 20:39:31 +0000</pubDate>
<dc:creator>BondageRadio</dc:creator>
<guid isPermaLink="false">665184@http://wordpress.org/support/</guid>
<description>&#60;p&#62;I was deliberately vague on my connection information, I'll admit that much.&#60;/p&#62;
&#60;p&#62;As for contacting my providers, it was they who first notified me about the DDoS attack on the chat server, by telephone.&#60;/p&#62;
&#60;p&#62;When the notice/warning/threat had come in, I was asleep ... the attack started at 1 am.&#60;/p&#62;
&#60;p&#62;Back Tracking the information and compiling it for whomever would listen I found out all I could about the kid who made the threat and his server and his host's information.&#60;/p&#62;
&#60;p&#62;I would publish that info here, but most would say that's just bad taste.&#60;/p&#62;
&#60;p&#62;When I could not get through to his host on their contact form or their help chat, or even the phone number they have listed on their site and in their domain whois, I found out a little more about what was going on.&#60;/p&#62;
&#60;p&#62;It turns out that the address they list as their address in the whois information reaches back to an empty parking lot (Google Maps Lookup, satalite view) in IL.&#60;/p&#62;
&#60;p&#62;A reverse phone number lookup revealed that the toll free number they published several places, including on their domain whois, network node info and on their website, dials through to a Urologists Office in California.&#60;/p&#62;
&#60;p&#62;One section of their site, reveals that for $150/month this same network provider will offer you protection against DDoS attacks, even if you are not on their network. (How exactly does THAT work again? Protect me from attacks by NOT attacking Me.)&#60;/p&#62;
&#60;p&#62;The next step was going up the network food chain to both Above.net and Level3.com to gain access to their Abuse and or Technical contact information.&#60;/p&#62;
&#60;p&#62;Find a published phone number, e-mail address, or contact form to fill out, when you are under DDoS assault. Try... please...&#60;/p&#62;
&#60;p&#62;I finally wrote to every e-mail address I could find published on their site (mostly sales) until I got to one sales person with an email-auto-responder that listed his Home number... I called him at home (I could hear his kids in the background) and he directed me to the VP of Network Operations, and gave me the unlisted numbers to both tech support and his direct line. (Tech Support?... unlisted?... what?)&#60;/p&#62;
&#60;p&#62;As soon as I got this information I called, it was 6PM and he was going out the door, done for the day.&#60;/p&#62;
&#60;p&#62;I talked with him for 2 hours and then he finally said &#34;Oh!!! Distributed Denial of Service... wow, those are tough to track down.&#34; (Vice President Of Network Opperations? Who did you sleep with?)&#60;/p&#62;
&#60;p&#62;I wanted to kill some one.&#60;/p&#62;
&#60;p&#62;Long story shorter... a week later I'm still getting hammered and then the hacker pointed at my main SQL server.&#60;/p&#62;
&#60;p&#62;48 MILLION HITS in 4 HOURS&#60;/p&#62;
&#60;p&#62;I don't care what network or firewall you have... your site is going down. 3 million hits in a day is a SLOW day for most sites with a pr 5 or better. I'm a pr 3 site... 5000 hits in a day is average.&#60;/p&#62;
&#60;p&#62;I pointed at the FBI because I didn't want my servers CATCHING FIRE.&#60;/p&#62;
&#60;p&#62;I hid behind the guys with the guns and badges, and where with all to make headway against that kind of assault.&#60;/p&#62;
&#60;p&#62;And... I checked... The Local Tampa office of the FBI still hasen't gotten the complaint yet... no one called... and no, it's not a crime to direct my DNS names to their IP addresses... so long as I don't mind my visitors seeing their website.&#60;/p&#62;
&#60;p&#62;So, it turns out, the phone call I got was a Social Engineering Hack, to get my DNS off the FBI IP's, till the order to halt the attack propagated through their bot net.&#60;/p&#62;
&#60;p&#62;Tampa Office is looking forward to reviewing the complaint.&#60;/p&#62;
&#60;p&#62;-Still PO'd-
&#60;/p&#62;</description>
</item>
<item>
<title>theapparatus on "DDoS Attacks Take Our Site Down - The Whole Story"</title>
<link>http://wordpress.org/support/topic/148253#post-664704</link>
<pubDate>Wed, 19 Dec 2007 21:06:39 +0000</pubDate>
<dc:creator>theapparatus</dc:creator>
<guid isPermaLink="false">664704@http://wordpress.org/support/</guid>
<description>&#60;p&#62;I've been thinking about a reply to your original post for most of the day but, without knowing the physical aspects of your account and your host, it comes down to me with you having a rather bad host.  Granted I don't know what your setup was but to me, it really sounds like your host didn't have enough security measures in place.  I know a strong firewall isn't a cureall but we run a wonderful pair of Intel routers on our racks and yesterday they blocked well over 3 million bad connections.  Granted 1.4 million were in spam alone but those boxes are a lifesaver.  We don't have DDoS attacks and, yes, we've been targeted a number of times.&#60;/p&#62;
&#60;p&#62;You never mention contacting your host which for us would have been the first step.  Again, not knowing the specifics to your attack, most DDoS attacks we've seen follow some sort of pattern that we've in the past have been able to come up with a filter to block them at the routers.  Heck, we've blocked some attacks simply by changing some IP addresses around.  &#60;/p&#62;
&#60;p&#62;And I've got to agree: Forwarding on attacks to the FBI website was just dumb.  You've now admitted publicly and for the record that you yourself have assocatied yourself with an attack onto their servers.  Congrats, you just admitted to a felony. (Adding a modlook at this.  Maybe the mods will be nice enough to edit out this thread.)&#60;/p&#62;
&#60;p&#62;And anyone who is familiar with IRC knows that there's a lot of trouble with running a server on an IRC network.  You need someone in there and watching over the server 24/7 to prevent stuff like this.&#60;/p&#62;
&#60;p&#62;Again, I'm not aware of everything that occured but I've got to admit, it really sounds like you went the wrong way on this.
&#60;/p&#62;</description>
</item>
<item>
<title>BondageRadio on "DDoS Attacks Take Our Site Down - The Whole Story"</title>
<link>http://wordpress.org/support/topic/148253#post-664683</link>
<pubDate>Wed, 19 Dec 2007 20:50:23 +0000</pubDate>
<dc:creator>BondageRadio</dc:creator>
<guid isPermaLink="false">664683@http://wordpress.org/support/</guid>
<description>&#60;p&#62;In a direct response to our 'Concerns' about DDoS 'Issues', The FBI and their Internet Crimes Unit contacted me by telephone to tell me they will 'Look Into' the issue.&#60;/p&#62;
&#60;p&#62;However, My directing the attackers AT their computer system 'May be construed as an Assault on the Federal Government'&#60;/p&#62;
&#60;p&#62;They recommended that I return the IP addresses to normal and log all connections.&#60;/p&#62;
&#60;p&#62;I simply responded &#34;No problem, in the mean time, I want to see a log of every shooting victim in the DC area, with date and time of impact for every bullet. I'll get around to capturing the shooters after I see the logs..&#34; and then I hung up.&#60;/p&#62;
&#60;p&#62;Our Tax Dollars at work.
&#60;/p&#62;</description>
</item>
<item>
<title>BondageRadio on "DDoS Attacks Take Our Site Down - The Whole Story"</title>
<link>http://wordpress.org/support/topic/148253#post-664535</link>
<pubDate>Wed, 19 Dec 2007 15:54:42 +0000</pubDate>
<dc:creator>BondageRadio</dc:creator>
<guid isPermaLink="false">664535@http://wordpress.org/support/</guid>
<description>&#60;p&#62;Several days ago our Host Site was completely demolished by a DDoS attack against our SQL server and several other servers on our network.&#60;/p&#62;
&#60;p&#62;We know who the Attacker is, oddly enough because they were braggadocios enough to come in and announce themselves BEFORE the attack.&#60;/p&#62;
&#60;p&#62;They suggested that we switch from a simple home hosted server for our chat, to a paid server with better protection. Interestingly enough, they just happen to have access to a paid host, who specializes in IRC hosting, and even offers 'PROTECTION' from DDoS attacks.&#60;/p&#62;
&#60;p&#62;When the attack took place exactly as threatened a short time later, we reported the offender and his company to the company's service providers, Level3.com and Above.net (which was no easy chore seeing as no direct abuse line or contact phone number was listed anywhere).&#60;/p&#62;
&#60;p&#62;They said they would &#34;Look into it&#34;, while we attempted to switch servers for our chat services.&#60;/p&#62;
&#60;p&#62;Apparently, during the week long wait for the attack to stop, a copy of our report made it back to the attacker, who upscaled the attack to a full blown assault on our site and SQL server.&#60;/p&#62;
&#60;p&#62;This time the report was sent to the FBI's Internet Crime Unit.&#60;/p&#62;
&#60;p&#62;While we waited for more 'Nothing' to happen we again attempted to switch server locations. This time the attack followed the DNS move, we could not get away so easily.&#60;/p&#62;
&#60;p&#62;Finally, during a 'low tide' in the ongoing attack, we redirected all of our domain names to a single IP at the FBI's Internet Crimes Unit.&#60;/p&#62;
&#60;p&#62;Still, nothing has happened, but we are able to get our message out from our home connections, to let all of you know why we are down, and why our site redirects to the FBI.&#60;/p&#62;
&#60;p&#62;If Loss of our wp-live-chat plugin function on your wordpress blog has caused you any problems what so ever, you are ENCOURAGED to fill out the complaint form that you are directed to when using older versions of our plugin, or the form presented when you visit our homepage.&#60;/p&#62;
&#60;p&#62;Please fill it out using the information on Mr. K. Hall, as presented in the FAQ in the plugins repository here.&#60;/p&#62;
&#60;p&#62;-OPOPC-&#60;br /&#62;
(One PO'd Plugin Coder)
&#60;/p&#62;</description>
</item>
<item>
<title>BondageRadio on "WP-Live-Chat (T-Shirt Ware)"</title>
<link>http://wordpress.org/support/topic/145764#post-656147</link>
<pubDate>Fri, 30 Nov 2007 18:22:26 +0000</pubDate>
<dc:creator>BondageRadio</dc:creator>
<guid isPermaLink="false">656147@http://wordpress.org/support/</guid>
<description>&#60;p&#62;First: as the plugin author, I have never used the SVN before, so bare with me as I struggle through using it to keep things up to date.&#60;/p&#62;
&#60;p&#62;I can NOT stress this enough... WP-LIVE-CHAT is ALPHA Software... I'm working in my spare time, like most of the other authors here, so if I don't reply to your questions in the demo chat room &#38;lt;Mezentius&#38;gt;, please don't think I'm ignoring you.&#60;/p&#62;
&#60;p&#62;Yes, the plugin home page is an ADULT site... and the chat rooms on the ADULT SERVER are geared for a MATURE crowd, but there is nothing saying that a blog, by an adult, can not be hosted on an adult server, and the users be Mature.&#60;/p&#62;
&#60;p&#62;This would not be a good plugin for say, '&#60;em&#62;Billy's Birthday Blog&#60;/em&#62;', unless of course '&#60;em&#62;Billy&#60;/em&#62;' was over 18.&#60;br /&#62;
&#60;code&#62;/* it wouldn&#38;#39;t hurt if she was cute, too. */&#60;/code&#62;&#60;/p&#62;
&#60;p&#62;This is a good plugin for other types of blogs however, Political Blogs, Sports Fan Blogs, RPG and Clan Blogs, Tech Support Blogs, or just as a Help Chat for plugin support issues on other plugins.&#60;/p&#62;
&#60;p&#62;I will not be releasing a NON-Adult-Server version, or a version that will work with YOUR IRC server. I run my server with a very relaxed TOS, and I'd like to see it grow before I add to my competitor's servers.&#60;/p&#62;
&#60;p&#62;I will however encourage anyone who wants to, to create their own version, and will even host updated user submitted, TOS compliant, versions under the same SVN location.
&#60;/p&#62;</description>
</item>

</channel>
</rss>
