- cross-posted to:
- technology@lemmy.world
- cross-posted to:
- technology@lemmy.world
Except we know its not true.
Just one month ago, Lemmy didn’t have CAPTCHAs, and we were hit by so many script-kiddies that signups to https://lemmy.world had to be disabled.
The hackers who will create thousands-of-accounts and make thousands-of-spam posts are largely low-quality hackers who don’t know how to make an AI bot. Proof? When the Admins added the dumbest of CAPTCHAs to https://lemmy.world, those fake-signups stopped.
CAPTCHAs work, at least at the level that lemmy.world is at. We’ll have to get better as we get more popular but there’s an ocean of difference from wget/curl script-kiddie and AI-using bot master.
It’s a very bad decision to not implement CAPTCHA when you are going to allow signups. There’s always someone that will take advantage of this and annoy you with constant sign ups.
It’s 13 years old now, but this XKCD comic is very timely.
I’ve been saying for a while now that the actual test should be that you miss a couple. If you can look at a this 4 nanometer picture of what is either a bird, a sofa, or the titanic, and correctly tell me if it has part of one pedal from a bicycle in it, you’re a robot.
That’s already built in. If you answer too quickly or too accurately (with the pictures at least), it will give you another one. Best way to beat this is to select an incorrect answer and then deselect it before submitting
Mind blown. I’ve observed this and it’s fucking infuriating, only to just realize they’re judging me for doing it too quickly and making me try again.
I thought the point of captchas was to train AI models?
So does this mean all that work is finally paying off? This is a success right?
In Soviet Russia, CAPTCHA figure out you
deleted by creator