berta recchia Posted November 11, 2013 Share Posted November 11, 2013 I can't find anything in the past with this issue.... We still have 1.4.6 running and will take a while to upgrade - not very easy Starting about 7 days ago we've been getting fake newsletter signups from the newsletter block. They use fake emails and we're getting email confirmation bounces. We're trying to figure out if there is a possible hole in that module or in the email confirmations sent ( which are bounced emails) Does anyone know if there is a threat? Any way ( besides disabling the module ) to prevent issues? Thanks Link to comment Share on other sites More sharing options...
berta recchia Posted November 12, 2013 Author Share Posted November 12, 2013 Nothing? None has this issue and concern? Link to comment Share on other sites More sharing options...
El Patron Posted November 12, 2013 Share Posted November 12, 2013 if it was me an mine? I would look at my access log, can be found on hosting account. look for bot IP's that are accessing your newsletter module.... you can then decide how to proceed, i.e. block the IP(s) as an example.... Link to comment Share on other sites More sharing options...
vekia Posted November 12, 2013 Share Posted November 12, 2013 hello these newsletter signups are related to ... bots. Crawlers trying to send all available forms on your website, they inserting there random values, also random mails. all what you can do is to block their ip addresses. Link to comment Share on other sites More sharing options...
jd440 Posted November 13, 2013 Share Posted November 13, 2013 I'm facing the same problem. But there is thousand of email. So Block ip are really difficult Link to comment Share on other sites More sharing options...
fishordog Posted November 16, 2013 Share Posted November 16, 2013 maybe disallow bots from accessing anything related to newsletter in robots.txt Link to comment Share on other sites More sharing options...
vekia Posted November 16, 2013 Share Posted November 16, 2013 unfortunately, these bots arent "friendly", they do not care about entries in robots.txt and just crawling whole site and trying to post all available forms, form spam / hack purposes Link to comment Share on other sites More sharing options...
Recommended Posts