Skip to:
Content
Pages
Categories
Search
Top
Bottom

Search Results for 'spam'

Viewing 25 results - 2,076 through 2,100 (of 2,674 total)
  • Author
    Search Results
  • #71068
    djsteve
    Participant

    This has been a wordpress mu issue for a while off and on.. I discussed an idea about at mu forums:

    https://mu.wordpress.org/forums/topic/13982

    [blockquote]

    I too have noticed that even putting domains in the block list seems to not stop future registrations. Here is a thought of mine.

    MAYBE a spammer actually signs up 100 new accounts, and then only activates one a day. So even though we have added his domain to the ban list for signups, he still has 99 more that have been signed up, but not yet activated?

    If this is the case I would like to see MU add core code that checks to see upon activation if the domain they originally used to signup has since been banned, and then prevent them from activating if it has.

    Just a thought, not sure if this is the case – but it may be worth looking into.

    [/blockquote]

    It was suggested that I add this suggestion to the trac, ( https://core.trac.wordpress.org/ )

    but I really don’t know how to use that thing…

    not sure that it is a buddypress specific issues, but I DO believe that the spammers are looking for buddypress phrases when compiling their lists of sites to hit…

    #71066
    Hugo Ashmore
    Participant

    But there are many steps one can initiate to stem that tide of spammers, although the domain blacklist is an issue in not apparently working I have still had reasonable success in reducing spam signups to around a dozen a day and still have one or two steps that I haven’t taken yet

    #71065
    gregfielding
    Participant

    @kunal17

    I’m seeing the same thing you are….

    Is there any way to get buddypress registration to reference the banned domain list?

    #71061
    Sam Steiner
    Participant

    I’m having 300 spam registrations a day and having to mark them all as spam manually 15 in one go in the user list. The plugin wordpress Hashcash (updated today to 4.5.1) should now work for BuddyPress registration but it stops EVERYBODY from registering.

    David Lewis, one week later, is your solution still working for you?

    #71054
    gregfielding
    Participant

    I can’t experiment either and am getting 10+ spam signups an hour. yikes.

    #70388
    brianterry10
    Member

    I totally agree with this. It’s quite confusing. I think more than a rewording of the text is needed.

    Perhaps you can give people a series of simple steps they should go through to complete setting up their membership?

    Step 1: Activate your membership

    You give them instructions to visit their email account then click on the activation link in the email.

    When they click on the activation link they’re taken to the next step page…

    Step 2: Customize your avatar

    They do this then press the button to complete, then they’re taken to the final step…

    Step 3: They’re then directed to the activity page, at the top of this page could be a message to tell them their account is now active and they can start posting.

    This 3 step process gives people a clear path to follow taking them to the page where they can then see what’s going on and begin taking part.

    Each step page is nice and simple.

    What do you think?

    #70351
    djsteve
    Participant

    I have similar issues, and I have been pondering possible reasons this occurs.

    I take the time to copy domain names that spammers com from, and add them to the mu-options as domains that are not allowed to create an account. I find that even after doing this, sometimes I get several more members with those email addys.. sometimes not.. the past week has seen a lot.

    There was a time a few months ago when it was a known bug for this, but I am guessing it’s been fixed in mu by now – (I’m using 2.92 I think).

    This is what I am thinking MAY be happening, and I’d love a way to update MU to close this loophole, if indeed it exists.

    I am thinking that the spammers actually created a dozen or more accounts, and only activated one at a time. I am thinking that perhaps by the time I add the bad domain to the list of no-signups-allowed, they have already created several others – and simply activate them later.

    If this is true, I would love for MU / Buddypress to do a check, when a member actually does this activation, and tell them sorry – the email domain is now on the bad list, and they can not activate.

    Not sure if this is true, just a thought.

    #70348
    snark
    Participant

    Still looking for help on this. My new BP site finally went live today — http://www.wordlab.com/ — and I’m getting a couple signups per hour that never click on the activation link. Some may be legit but can’t figure out the activation process, but from email correspondence I’ve only found one who fit that bill — the others never respond to me, so I’m guessing a fair percentage of them are spambots using fake email addresses.

    So it would be great to have these improved User sorting options in the WP Admin, so I could track down bogus registrations, perhaps those that haven’t been activated after a set amount of time, and delete those users in batches. An alternate strategy would be to have the system auto delete (or delete en masse on command) any registrations that are never confirmed after a set period (10 days, 30 days, etc.)

    #70320
    Anointed
    Participant

    I’ve run into a similar problem but it’s not related to the emails not going through.

    In testing, I have found that almost without exception, that no one pays attention to the text above the crop avatar to check their email for the validation.

    The system takes the user to the crop avatar portion, which they do, but after submitting their new avatar, they are left on the same screen, with just a small text warning above the avatar to activate their account.

    Actually, it even caught me off guard a few times, not realizing I needed to activate a new account.

    Maybe in the future make this much more obvious?

    #70315
    brianterry10
    Member

    I think this problem is connected with the mailing settings of my server. I’ll investigate this more.

    #70300
    brianterry10
    Member

    Hi Andy

    Thanks for your reply.

    I think the problem is the email isn’t being sent out to the new members with the link for them to activate their account.

    I’ve checked everywhere including spam folder to see if the message has been received at all but I just can’t find it.

    New members are being given the roll of “members”.

    Could you possibly tell me where within WordPress I would set up outbound email configuration?

    I’m going to turn off all the plugins (except BuddyPress) to see if there’s a plugin conflict that’s causing this problem.

    Do you have any suggestions?

    Many thanks!

    #70286
    Andy Peatling
    Keymaster

    This means that the user hasn’t activated their account yet. I need to change the message.

    #70285
    brianterry10
    Member

    Hello

    Do you have any suggestions on a fix so new members aren’t always marked as spammers?

    This is for a new installation of BuddyPress and they are the only 2 members I’ve added myself to test out membership to the site.

    Here’s the message I’m getting when I visit a new members profile page from the admin area:

    “This user has been marked as a spammer. Only site admins can view this profile.”

    I’m using BuddyPress 1.2.3.

    How do you unmark someone as a member?

    Why is it that new members are marked as a spammer, how does the software decide this?

    How can this be fixed or controlled?

    Thanks for any help you can give on this.

    Brian

    #70279
    Bowe
    Participant

    Are you sure the emails are not going to a junk/spam folder?

    John Stringfellow
    Participant

    For anyone that runs across the problem. I never got any response from anyone here so I found an Ajax login plugin that is working beautifully as a workaround. I’m also not having any issues with spambot fake registrations this way either.

    modemlooper
    Moderator

    ok, so if anyone is usimg the twi connect plugin and a users does not activates after signing up and then goes to your site and clicks the twitter login it will log them in but they will be marked as a spammer. I edited database to 0 and its ok

    #69287
    Hugo Ashmore
    Participant

    Hmm it’s holding up then.

    #69272
    David Lewis
    Participant

    Well it’s been 3 full days now without a SPAM signup.

    Paul Wong-Gibbs
    Keymaster

    Windhamdavid, your post got marked as spam by askimet (spelling?). I’m just going through the spam bin atm.

    #69212
    Hugo Ashmore
    Participant

    The phrase “Famous last words” springs to mind :-)

    But post back with update if still not getting spam maybe I’ll do the same with proxy bans

    #69211
    David Lewis
    Participant

    @Kunal17: I’m sure that’s probably just a coincidence.

    @pushi22le: That’s a new tip. Thanks :o)

    BTW… since banning proxies from accessing my site… I haven’t had a single SPAM signup.

    #69154
    Kunal17
    Participant

    I upgraded to bp1.2.2.1/wp2.9.2 from bp1.1.2/bp2.8.6 a couple of days ago and the spam on my site has significantly increased.

    I also noticed that spammers from previously banned domains are now able to register.

    #68969
    Ted Mann
    Participant

    I’ve been getting pummeled with spam signups ever since the BP_REGISTER_SLUG stopped working throughout the site. I used R-A-Y’s idea of just having an .htaccess redirect. Just curious: If others have taken that approach, does it indeed cut down on spam signups?

    #68954
    pushi22le
    Participant

    The BP demo site is also full of spam. Very interesting.

    #68865
    MrMaz
    Participant

    @agrunder

    I have added the feeds idea to my list of requests. If I get a bunch of requests I will consider adding that feature.

    Link avatars are already stored in a separate directory under wp-content/blogs.dir/files/link-avatars. I wonder if maybe this is not the case for single WP? I still need to do a bunch more testing.

    The thumbnails that are uploaded are handled very much like the other BuddyPress avatars, and nearly all of the functionality for handling them is re-used as far as code goes. Right now the original “should” be getting resized down to 450×450 on upload, and then a copy down to 150×150 and 50×50 after the crop. All of these dimensions are determined by BP constants.

    The thumbs are scaled down via CSS depending on the situation. For instance the 50×50 is used exactly as is.

    I have not received much feedback at all regarding real world spam issues with Links, but I know eventually there will be a problem. I want to wait to tackle spam when there are real world use-cases to solve, not hypothetical ones.

    What you described is very similar to Digg, and I think would be a cool feature, but maybe not to handle spam. I have planned from the beginning to allow users to set a threshold for negative rated links that would prevent them from showing up, for instance anything rated -5 or lower, don’t show me. The admin could set the default value.

    Thanks for taking the time to submit some valuable feedback.

Viewing 25 results - 2,076 through 2,100 (of 2,674 total)
Skip to toolbar