Dear Jim-san, IMHO those "affnia" or "affiria" is bad abbreviation of the "affiliates" system that are widely adopted by online retail such as Amazon, Google, and other advertising entities.
By setting affiliate ID on advertisements, matome blog owner gets a cut from profit made from the purchases made via the ad.
It is true that some of the blog owners team up to programattically generate a lot of similar looking websites, occupying the top items in search results, and redirecting significant amount of traffic to those blogs.
They collectively manage sites to keep contents flowing, and also have sites redirecting articles between each other to keep users inside their closed circle of web sites. They were also found to be modifying texts to defame certain parties.
If we are to counter their tactics, we should specifically target blogs using "affiliates" system imposing certain requirements. Legitimate blogs that are kept by each board's members for history keeping should be left untouched with condition of not adding affiliate link that profits the matome-owners. (free web rental sites usually have ads with affiliate links that pays the server owners).
Would it be possible to delete ninpoucho IDs from the past .dat the same way you wiped timestamp for the maru logs ?
Improving the security might prevent future leakage, however will not protect against current issues. Can we have all ninpoucho IDs wiped from the logs from year 2011 and beyond just to be safe ?
According to >>718, the ninpoucho stores data at three different locations.
First, each res entries in dat files have ninpoucho ID and ninpoucho Level information. It should be stored in format similar to below. Name|Date|ID|Main text|Remote host|IP Address|User agent|NinjaID|Ninja Level
Second, ninpoucho ID, ninpoucho Level, last IP address and last time stamp is stored on the server side.
Thirdly, the same ninpoucho ID is stored in the cookie.
The ninpoucho system compares the value in the cookie (#3) and local data (#2) and increments or decrements the level.
If both #1 and #2 is to leak, people will be able to associate each res entries with IP address. This could be disastrous. Even if IP did not leak, people can associate posts by same poster.
Can we have all ninpoucho ID entries wiped from the .dat files from year 2011 and beyond to ensure that we get a clean start with the revised ninpoucho system ?
There is an urgent request from sumou board. We are currently overrun by trolls posting questionable content in multiple threads. Even the threads used for autonomy is in unusable state.