<?xml version="1.0"?>
<rss xmlns:dc="http://purl.org/dc/elements/1.1/" version="2.0">
  <channel>
    <title>Transition Technology: Ticket #888: Adverts on Transition Network Front Page loaded via flickrit.com embedded content</title>
    <link>http://localhost:8080/trac/ticket/888</link>
    <description>&lt;p&gt;
It it intentional or accidental that adverts from &lt;a class="ext-link" href="https://secureads.bitbillions.com/"&gt;&lt;span class="icon"&gt;​&lt;/span&gt;https://secureads.bitbillions.com/&lt;/a&gt; are being loaded on the front page of &lt;a class="ext-link" href="https://www.transitionnetwork.org/"&gt;&lt;span class="icon"&gt;​&lt;/span&gt;https://www.transitionnetwork.org/&lt;/a&gt; via the embedded content from flickrit.com?
&lt;/p&gt;
</description>
    <language>en-us</language>
    <image>
      <title>Transition Technology</title>
      <url>/trac/chrome/site/TransitionNetwork-Logo-Web-Small.jpg</url>
      <link>http://localhost:8080/trac/ticket/888</link>
    </image>
    <generator>Trac 0.12.5</generator>
    <item>
      
        <dc:creator>chris</dc:creator>

      <pubDate>Sun, 06 Dec 2015 12:30:24 GMT</pubDate>
      <title>attachment set</title>
      <link>http://localhost:8080/trac/ticket/888</link>
      <guid isPermaLink="false">http://localhost:8080/trac/ticket/888</guid>
      <description>
          &lt;ul&gt;
            &lt;li&gt;&lt;strong&gt;attachment&lt;/strong&gt;
                set to &lt;em&gt;14260753359355.jpg&lt;/em&gt;
            &lt;/li&gt;
          &lt;/ul&gt;
      </description>
      <category>Ticket</category>
    </item><item>
      
        <dc:creator>chris</dc:creator>

      <pubDate>Sun, 06 Dec 2015 12:32:52 GMT</pubDate>
      <title>attachment set</title>
      <link>http://localhost:8080/trac/ticket/888</link>
      <guid isPermaLink="false">http://localhost:8080/trac/ticket/888</guid>
      <description>
          &lt;ul&gt;
            &lt;li&gt;&lt;strong&gt;attachment&lt;/strong&gt;
                set to &lt;em&gt;tn.png&lt;/em&gt;
            &lt;/li&gt;
          &lt;/ul&gt;
      </description>
      <category>Ticket</category>
    </item><item>
      
        <dc:creator>chris</dc:creator>

      <pubDate>Sun, 06 Dec 2015 12:40:17 GMT</pubDate>
      <title>hours, totalhours changed</title>
      <link>http://localhost:8080/trac/ticket/888#comment:1</link>
      <guid isPermaLink="false">http://localhost:8080/trac/ticket/888#comment:1</guid>
      <description>
          &lt;ul&gt;
            &lt;li&gt;&lt;strong&gt;hours&lt;/strong&gt;
                changed from &lt;em&gt;0.0&lt;/em&gt; to &lt;em&gt;0.25&lt;/em&gt;
            &lt;/li&gt;
            &lt;li&gt;&lt;strong&gt;totalhours&lt;/strong&gt;
                changed from &lt;em&gt;0.0&lt;/em&gt; to &lt;em&gt;0.25&lt;/em&gt;
            &lt;/li&gt;
          &lt;/ul&gt;
        &lt;p&gt;
I was just checking the page load time, given the huge amount of RAM I threw at the server last night to try to keep it up (see &lt;a class="closed ticket" href="http://localhost:8080/trac/ticket/846#comment:58" title="maintenance: Load Spikes on BOA PuffinServer (closed: fixed)"&gt;ticket:846#comment:58&lt;/a&gt;) via &lt;a class="ext-link" href="http://tools.pingdom.com/fpt"&gt;&lt;span class="icon"&gt;​&lt;/span&gt;http://tools.pingdom.com/fpt&lt;/a&gt; and noticed that this image was served when the front page was loaded:
&lt;/p&gt;
&lt;p&gt;
&lt;a style="padding:0; border:none" href="http://localhost:8080/trac/attachment/ticket/888/14260753359355.jpg"&gt;&lt;img src="http://localhost:8080/trac/raw-attachment/ticket/888/14260753359355.jpg" /&gt;&lt;/a&gt;
&lt;/p&gt;
&lt;p&gt;
Here is the reference to it from the Pingdom results:
&lt;/p&gt;
&lt;p&gt;
&lt;a style="padding:0; border:none" href="http://localhost:8080/trac/attachment/ticket/888/tn.png"&gt;&lt;img src="http://localhost:8080/trac/raw-attachment/ticket/888/tn.png" /&gt;&lt;/a&gt;
&lt;/p&gt;
&lt;p&gt;
I assume this has been loaded via some 3rd party content embedded into the front page, I assume this was accidental and not intended?
&lt;/p&gt;
&lt;p&gt;
Adverts are used to deliver a lot of malware these days, see for example &lt;a class="ext-link" href="http://www.theregister.co.uk/2015/08/27/malvertising_feature/"&gt;&lt;span class="icon"&gt;​&lt;/span&gt;http://www.theregister.co.uk/2015/08/27/malvertising_feature/&lt;/a&gt;
&lt;/p&gt;
&lt;p&gt;
If that is the case should we try to track down the cause of this?
&lt;/p&gt;
      </description>
      <category>Ticket</category>
    </item><item>
      
        <dc:creator>chris</dc:creator>

      <pubDate>Sun, 06 Dec 2015 12:41:26 GMT</pubDate>
      <title>summary changed</title>
      <link>http://localhost:8080/trac/ticket/888#comment:2</link>
      <guid isPermaLink="false">http://localhost:8080/trac/ticket/888#comment:2</guid>
      <description>
          &lt;ul&gt;
            &lt;li&gt;&lt;strong&gt;summary&lt;/strong&gt;
                changed from &lt;em&gt;Adverts on Transition Netword Front Page&lt;/em&gt; to &lt;em&gt;Adverts on Transition Network Front Page&lt;/em&gt;
            &lt;/li&gt;
          &lt;/ul&gt;
      </description>
      <category>Ticket</category>
    </item><item>
      
        <dc:creator>chris</dc:creator>

      <pubDate>Sun, 06 Dec 2015 12:43:26 GMT</pubDate>
      <title>attachment set</title>
      <link>http://localhost:8080/trac/ticket/888</link>
      <guid isPermaLink="false">http://localhost:8080/trac/ticket/888</guid>
      <description>
          &lt;ul&gt;
            &lt;li&gt;&lt;strong&gt;attachment&lt;/strong&gt;
                set to &lt;em&gt;tn2.png&lt;/em&gt;
            &lt;/li&gt;
          &lt;/ul&gt;
      </description>
      <category>Ticket</category>
    </item><item>
      
        <dc:creator>chris</dc:creator>

      <pubDate>Sun, 06 Dec 2015 12:44:31 GMT</pubDate>
      <title></title>
      <link>http://localhost:8080/trac/ticket/888#comment:3</link>
      <guid isPermaLink="false">http://localhost:8080/trac/ticket/888#comment:3</guid>
      <description>
        &lt;p&gt;
Here is another thing loaded from that server.
&lt;/p&gt;
&lt;p&gt;
&lt;a style="padding:0; border:none" href="http://localhost:8080/trac/attachment/ticket/888/tn2.png"&gt;&lt;img src="http://localhost:8080/trac/raw-attachment/ticket/888/tn2.png" /&gt;&lt;/a&gt;
&lt;/p&gt;
      </description>
      <category>Ticket</category>
    </item><item>
      
        <dc:creator>chris</dc:creator>

      <pubDate>Sun, 06 Dec 2015 12:50:37 GMT</pubDate>
      <title>attachment set</title>
      <link>http://localhost:8080/trac/ticket/888</link>
      <guid isPermaLink="false">http://localhost:8080/trac/ticket/888</guid>
      <description>
          &lt;ul&gt;
            &lt;li&gt;&lt;strong&gt;attachment&lt;/strong&gt;
                set to &lt;em&gt;tn3.png&lt;/em&gt;
            &lt;/li&gt;
          &lt;/ul&gt;
      </description>
      <category>Ticket</category>
    </item><item>
      
        <dc:creator>chris</dc:creator>

      <pubDate>Sun, 06 Dec 2015 12:52:00 GMT</pubDate>
      <title></title>
      <link>http://localhost:8080/trac/ticket/888#comment:4</link>
      <guid isPermaLink="false">http://localhost:8080/trac/ticket/888#comment:4</guid>
      <description>
        &lt;p&gt;
And some javascript from &lt;tt&gt;bam.nr-data.net&lt;/tt&gt; that is loaded from the HTML above:
&lt;/p&gt;
&lt;p&gt;
&lt;a style="padding:0; border:none" href="http://localhost:8080/trac/attachment/ticket/888/tn3.png"&gt;&lt;img src="http://localhost:8080/trac/raw-attachment/ticket/888/tn3.png" /&gt;&lt;/a&gt;
&lt;/p&gt;
      </description>
      <category>Ticket</category>
    </item><item>
      
        <dc:creator>chris</dc:creator>

      <pubDate>Sun, 06 Dec 2015 12:53:50 GMT</pubDate>
      <title></title>
      <link>http://localhost:8080/trac/ticket/888#comment:5</link>
      <guid isPermaLink="false">http://localhost:8080/trac/ticket/888#comment:5</guid>
      <description>
        &lt;p&gt;
The source of these adverts are webbugs are the content embedded in the front page from flickrit.com -- see the Referer fields in the images above.
&lt;/p&gt;
      </description>
      <category>Ticket</category>
    </item><item>
      
        <dc:creator>chris</dc:creator>

      <pubDate>Sun, 06 Dec 2015 12:54:54 GMT</pubDate>
      <title>description, summary changed</title>
      <link>http://localhost:8080/trac/ticket/888#comment:6</link>
      <guid isPermaLink="false">http://localhost:8080/trac/ticket/888#comment:6</guid>
      <description>
          &lt;ul&gt;
            &lt;li&gt;&lt;strong&gt;description&lt;/strong&gt;
              modified (&lt;a href="/trac/ticket/888?action=diff&amp;amp;version=6"&gt;diff&lt;/a&gt;)
            &lt;/li&gt;
            &lt;li&gt;&lt;strong&gt;summary&lt;/strong&gt;
                changed from &lt;em&gt;Adverts on Transition Network Front Page&lt;/em&gt; to &lt;em&gt;Adverts on Transition Network Front Page loaded via flickrit.com embedded content&lt;/em&gt;
            &lt;/li&gt;
          &lt;/ul&gt;
      </description>
      <category>Ticket</category>
    </item><item>
      
        <dc:creator>sam</dc:creator>

      <pubDate>Sun, 06 Dec 2015 12:56:45 GMT</pubDate>
      <title></title>
      <link>http://localhost:8080/trac/ticket/888#comment:7</link>
      <guid isPermaLink="false">http://localhost:8080/trac/ticket/888#comment:7</guid>
      <description>
        &lt;p&gt;
Definitely unintentional.
&lt;/p&gt;
&lt;p&gt;
My guess is it's to do with this thing: ​&lt;a class="ext-link" href="https://flickrit.com/faqs.html"&gt;&lt;span class="icon"&gt;​&lt;/span&gt;https://flickrit.com/faqs.html&lt;/a&gt;
&lt;/p&gt;
&lt;p&gt;
I used it to embed a Flickr slideshow, as Flickr don't do that natively any more. They don't mention they are going to fill your site with ads, so it's unclear if they have been exploited themselves, or if that's their model. Either way I've removed it and it seems to have gone away: ​&lt;a class="ext-link" href="http://tools.pingdom.com/fpt/#!/cQcJDT/transitionnetwork.org"&gt;&lt;span class="icon"&gt;​&lt;/span&gt;http://tools.pingdom.com/fpt/#!/cQcJDT/transitionnetwork.org&lt;/a&gt;
&lt;/p&gt;
&lt;p&gt;
Sorry about that!
Thanks
Sam
&lt;/p&gt;
      </description>
      <category>Ticket</category>
    </item><item>
      
        <dc:creator>sam</dc:creator>

      <pubDate>Sun, 06 Dec 2015 12:57:24 GMT</pubDate>
      <title>status changed; resolution set</title>
      <link>http://localhost:8080/trac/ticket/888#comment:8</link>
      <guid isPermaLink="false">http://localhost:8080/trac/ticket/888#comment:8</guid>
      <description>
          &lt;ul&gt;
            &lt;li&gt;&lt;strong&gt;status&lt;/strong&gt;
                changed from &lt;em&gt;new&lt;/em&gt; to &lt;em&gt;closed&lt;/em&gt;
            &lt;/li&gt;
            &lt;li&gt;&lt;strong&gt;resolution&lt;/strong&gt;
                set to &lt;em&gt;fixed&lt;/em&gt;
            &lt;/li&gt;
          &lt;/ul&gt;
      </description>
      <category>Ticket</category>
    </item><item>
      
        <dc:creator>chris</dc:creator>

      <pubDate>Sun, 06 Dec 2015 12:58:35 GMT</pubDate>
      <title>description changed</title>
      <link>http://localhost:8080/trac/ticket/888#comment:9</link>
      <guid isPermaLink="false">http://localhost:8080/trac/ticket/888#comment:9</guid>
      <description>
          &lt;ul&gt;
            &lt;li&gt;&lt;strong&gt;description&lt;/strong&gt;
              modified (&lt;a href="/trac/ticket/888?action=diff&amp;amp;version=9"&gt;diff&lt;/a&gt;)
            &lt;/li&gt;
          &lt;/ul&gt;
      </description>
      <category>Ticket</category>
    </item><item>
      
        <dc:creator>chris</dc:creator>

      <pubDate>Sun, 06 Dec 2015 12:59:14 GMT</pubDate>
      <title></title>
      <link>http://localhost:8080/trac/ticket/888#comment:10</link>
      <guid isPermaLink="false">http://localhost:8080/trac/ticket/888#comment:10</guid>
      <description>
        &lt;p&gt;
Replying to &lt;a href="http://localhost:8080/trac/ticket/888#comment:7" title="Comment 7 for Ticket #888"&gt;sam&lt;/a&gt;:
&lt;/p&gt;
&lt;blockquote class="citation"&gt;
&lt;p&gt;
I used it to embed a Flickr slideshow, as Flickr don't do that natively any more. They don't mention they are going to fill your site with ads, so it's unclear if they have been exploited themselves, or if that's their model. Either way I've removed it and it seems to have gone away: ​&lt;a class="ext-link" href="http://tools.pingdom.com/fpt/#!/cQcJDT/transitionnetwork.org"&gt;&lt;span class="icon"&gt;​&lt;/span&gt;http://tools.pingdom.com/fpt/#!/cQcJDT/transitionnetwork.org&lt;/a&gt;
&lt;/p&gt;
&lt;/blockquote&gt;
&lt;p&gt;
Thanks Sam! :-)
&lt;/p&gt;
      </description>
      <category>Ticket</category>
    </item>
 </channel>
</rss>