[etoys-dev] forum spam

Timothy Falconer timothy at squeakland.org
Mon Jul 13 07:20:16 EDT 2009

Hi everyone,

We got spammed by two new forum accounts this weekend.    I've removed  
the accounts, but it begs the question ... how did this happen?

Forum registration requires a "type the numbers in the image" check  
and a "click this email" authentication check before posting is allowed.

This means the accounts could both read funky image numbers *and*  
clicked through the link from their inbox (with a valid email address).

Either spambots have gotten smarter or these were actual humans, which  
we can't really protect against without requiring moderator approval  
of all new accounts.

Anyway, just letting you all know that I'm watching, researching, and  
considering the problem carefully.

Take care,

Timothy Falconer
Squeakland Foundation

More information about the etoys-dev mailing list