Support » Everything else WordPress » Comment spam avoids submission restrictions

  • I’m running WP 2.8.6, Akismet and the NoSpamNX plugin. They do a good job of stopping comment spam. But I noticed that the spams Akismet need to block when NoSpamNX is running generally do not have an email address submitted. Since my blog is set up to not allow comments if the commenter doesn’t leave an email address, it is apparent that the spammer is using some kind of back door injection attack.

    I don’t think this is a high priority issue since Akismet is still detecting the spams, but it would still probably be a Good Thing.

    To remove as many variables as I could, I tried the following without success.
    * set my theme to the Default WordPress theme
    * moved all non-active themes to another directory
    * deactivated all plugins except Akismet and NoSpamNX

    Comment spams with no email addresses still got through and were subsequently blocked by Akismet.

    Most of my comment spams all come from 93.89.194.8 and leave a URL of en.grand-NOSPAMpianos.org (I added the “NOSPAM”).

    I don’t know how to research this but it might be worthwhile for someone to figure out how these comment spams are making it past the basic “email address required” restriction.

    Cheers,
    Lee

Viewing 3 replies - 1 through 3 (of 3 total)
  • en.grand-NOSPAMpianos.org

    Funny… I get a lot of those too.

    Have you tried using just one of the two spam plugins? Even perfectly good and respectable plugins can conflict with one another sometimes. Also, have you tried putting ‘en.grand’ in the ‘Comment Moderation’ textbox at wp-admin->Settings->Discussion?

    I don’t know how the spam is getting past but I’m prone to looking into that sort of thing. I’ll let you know if I work it out, or find a link to someone who has.

    It actually seems to be really easy to get past the restriction with a dummy email address if you don’t require that users be logged in to comment.

    Thread Starter gadlen

    (@gadlen)

    Oop! I thought en.grand-NOSPAMpianos.org was dropping comment spam but it’s trackback spam. I should have looked closer.

    Please ignore this thread.

Viewing 3 replies - 1 through 3 (of 3 total)
  • The topic ‘Comment spam avoids submission restrictions’ is closed to new replies.