Chinese Netcommunity sign-up attacks

Options
I noticed yesterday that we had over 2k sign-up requests from China in my Netcommunity plug-in in RE.

I opened a case where the technician identified a common email and ran a script to delete several based on the email but when I checked today, I had even more.


Yesterday, it was also recommended that I enable ReCaptcha on our Netcommunity/Online Express forms, which I did.

But when I looked at the sign-ups, we still had over 2K sign-ups that were dated from yesterday.


Also, since the tech said that he removed via script the ones from yesterday, he didn't see a commonality in the sign-ups in the database for these new ones, but yet I see several, like each name uses a title "2nd. Lt." and an email site as "www.cai005r.com" etc.  But the tech has told me that I have to select each of them (250 at a time) and delete them manually.  Of course, I have to scroll through each one because there might be a valid sign-up mixed in with the trash.  Either way, only being able to see these 250 at a time and not being able to sort the window is not fun.


I really hope this captcha thing prevents this, but I guess we will see again tonight if we have a lot of sign-ups again, because I really see this as an attack on our website that seems like it could be prevented in other ways.
Tagged:

Categories