Swingular - Swingers

Swingers Forum - Attack of the Bots

line
Previous Post Next Post
As most of you have probably seen recently, Swingular was inundated with fake profiles. These were the work of a bot out of Russia. They were literally creating a new account every second.

Once we found out about it, we couldn't keep up in deleting the fake accounts because they were coming in so fast. At first, we couldn't figure out how they were bypassing our reCaptcha human verification feature.

After some digging, we discovered a small flaw in the registration process of the desktop site that allowed anyone to bypass the human verification feature with just one small value in the url.

We have since patched the registration hole and the bots can no longer bypass the verification. And after some long manual work, we carefully found all the fake profiles from this bot and removed them.

We should no longer be susceptible to bot attacks like that again.

Thanks to those users who reported the issue as well. If you find an issue that is of urgent matter like this one, please call our support line at 877-839-0045 as that is the fastest way to reach us. We are available M-F 7AM to 6PM MST, closed holidays. If we can't be reached by phone, send an email to [email protected].
The admins exist and got the job done when in need. Good in my book.
Administrator wrote:

As most of you have probably seen recently, Swingular was inundated with fake profiles. These were the work of a bot out of Russia. They were literally creating a new account every second.
Once we found out about it, we couldn't keep up in deleting the fake accounts because they were coming in so fast. At first, we couldn't figure out how they were bypassing our reCaptcha human verification feature.
After some digging, we discovered a small flaw in the registration process of the desktop site that allowed anyone to bypass the human verification feature with just one small value in the url.
We have since patched the registration hole and the bots can no longer bypass the verification. And after some long manual work, we carefully found all the fake profiles from this bot and removed them.
We should no longer be susceptible to bot attacks like that again.
Thanks to those users who reported the issue as well. If you find an issue that is of urgent matter like this one, please call our support line at 877-839-0045 as that is the fastest way to reach us. We are available M-F 7AM to 6PM MST, closed holidays. If we can't be reached by phone, send an email to [email protected].


Thanks for all u do
MountainAdventures wrote:

The admins exist and got the job done when in need. Good in my book.


We haven't gone anywhere. We are still here. We just don't peruse the forums like we use to. We ask that members contact us directly when they find issues but they like to post in the forums instead so we don't see them.

For context, we are no longer actively adding features to either the desktop or mobile sites. We are only fixing known bugs/issues. Instead, we are putting all of our resources into a whole new combined mobile/desktop site using all of the latest technologies.
Here is a screenshot of the new home page.
I still think the “who’s viewing you” should NOT be an option. How does one read, check into a profile to see interest. Just because you view a profile doesn't mean you have interest. its misleading that you might when you don't! If you/they have intrest just reach out! Nothing missing about contact.
We feel you have been very responsive! Thanks for that!!

One feature we would love to see is a history between parties on each profile. So if we are looking at a profile and we have exchanged one or more emails, we can refresh our memory as to what they have sent us or visa versa - this would be extremely helpful if you are in the mood to add an enhancement. Thanks again for all you do!!
utyolo wrote:

That looks much improved!
How about a feature "who's viewing you" and "send flirt"?


We used to have a send kiss feature but removed it because it was being abused and members were getting inundated with them.

As for ‘who’s viewing,’ after much debate (many times in the past 15years), as funfindfriends states, it causes more harm than good so we won’t be implementing such a feature.
SweettAndH wrote:

We feel you have been very responsive! Thanks for that!!
One feature we would love to see is a history between parties on each profile. So if we are looking at a profile and we have exchanged one or more emails, we can refresh our memory as to what they have sent us or visa versa - this would be extremely helpful if you are in the mood to add an enhancement. Thanks again for all you do!!


The messaging system is being redesigned to be more like Messages on your phone instead of like an email system as it is currently. Basically, it will be like a conversation or chat. The email type system is going away.
SweettAndH wrote:

We feel you have been very responsive! Thanks for that!!
One feature we would love to see is a history between parties on each profile. So if we are looking at a profile and we have exchanged one or more emails, we can refresh our memory as to what they have sent us or visa versa - this would be extremely helpful if you are in the mood to add an enhancement. Thanks again for all you do!!


There is a email history icon on the non mobile version. It looks like an envelope with a spy glass on it.
FUNFINDFRIENDS wrote:

SweettAndH wrote:

We feel you have been very responsive! Thanks for that!!
One feature we would love to see is a history between parties on each profile. So if we are looking at a profile and we have exchanged one or more emails, we can refresh our memory as to what they have sent us or visa versa - this would be extremely helpful if you are in the mood to add an enhancement. Thanks again for all you do!!

There is a email history icon on the non mobile version. It looks like an envelope with a spy glass on it.


Cool - I guess we need to get off our phones more!

Thanks!
Administrator - any plan to purge/prune inactive accounts?

Thank you for giving the site some love.
SammyHardon wrote:

Hella ugly lol


Don't be so hard on yourself
Sofutosuwappu wrote:

any plan to purge/prune inactive accounts?


Yes, once we launch the new version of the site, we will start automatically purging inactive guest/trial accounts. However, if a member has a paid subscription or a lifetime membership, we will not purge them even if they become inactive for a long time as they have paid for that privilege. We may just designate them as inactive after a certain period of time and give them an inactive label. Then we can add a search option that will allow you to hide inactive members.
Administrator wrote:

Sofutosuwappu wrote:

any plan to purge/prune inactive accounts?

Yes, once we launch the new version of the site, we will start automatically purging inactive guest/trial accounts. However, if a member has a paid subscription or a lifetime membership, we will not purge them even if they become inactive for a long time as they have paid for that privilege. We may just designate them as inactive after a certain period of time and give them an inactive label. Then we can add a search option that will allow you to hide inactive members.


Ahhhh....it's time for annual appearance of an admin person.

What about the inactive profiles that show up in the "Members Online" tab? There are profiles that haven't been used in YEARS that appear to not only be active, but to be currently online. What's the plan for that?

We know this to be true because we have an old profile that shows up "online", when it clearly isn't.

A true and accurate representation of actual members and their level of activity would be appreciated.
Great job Admins....New home page looks good.
utyolo wrote:

Administrator wrote:

Here is a screenshot of the new home page.

That looks much improved!
How about a feature "who's viewing you" and "send flirt"?


OMG ... Hell NO to a who’s viewing me feature lol !! UGH 🙄 ... leave that lame feature in SLS
wait a minute?... are they paying? if there's no CC transaction the whole thing should fall into a bit bucket.

ja accuse