cwe
Well-known member
So I just finished migrating my site from vB 3.8 to XF. We went live with the DNS switch yesterday. This morning, I have seven emails from the contact form inviting me to explore a world of sexy photo galleries, russian brides, etc.
I have a captcha in place, but apparently humans are dedicated to spamming XF contact forms or they figured a way to trigger the script that bypasses the captcha.
What I noticed though is that most of the emails I received this morning are from email domains that I have included in my Banned Emails list.
For example, I have
Suggestion: Disallow the contact form from sending emails from addresses that are covered by the Banned Emails list. I don't want them registering and posting spam in the forums. I also don't want them sending me spam directly.
I have a captcha in place, but apparently humans are dedicated to spamming XF contact forms or they figured a way to trigger the script that bypasses the captcha.
What I noticed though is that most of the emails I received this morning are from email domains that I have included in my Banned Emails list.
For example, I have
*@mail.ru
and *@yandex.ru
in my banned emails list. Two of the contact form emails I received this morning were from those domains.Suggestion: Disallow the contact form from sending emails from addresses that are covered by the Banned Emails list. I don't want them registering and posting spam in the forums. I also don't want them sending me spam directly.
Upvote
17