Announcement

Collapse
No announcement yet.

spoofing e-mail address from checkout e-mail

Collapse
X
 
  • Filter
  • Time
  • Show
Clear All
new posts

    spoofing e-mail address from checkout e-mail

    I don't know if this is coincidence, but twice in the last month we've had orders placed but aborted at the payment screen- after the confirmation e-mail is sent to the customer but before card details are entered. Within 24 hours we've seen a huge increase in "returned mail, user unknown" or similar automatic e-mail responses from mailservers- several hundred percent increases in both cases. It seems to me that someone is getting a valid e-mail address from the site and using it to spoof e-mails, both times offering cheap software.
    I assume there's no easy way to prevent this, but I do find it really annoying as I have to deal with a couple of hundred dodgy e-mails every morning, amongst which are some valuable ones. If anyone's got any ideas of how to limit these spoofs I'd welcome them....
    Cheers,
    Ben
    Ben
    http://www.fairygoodies.co.uk

    #2
    i though the vulnerabilities within the actinicform had been addressed in later patches, you don't say which version you are using.

    do a forumsearch on mail form for more info

    Comment


      #3
      I'm using 8.02 Business. I'll search some more before posting further- thanks
      Ben
      http://www.fairygoodies.co.uk

      Comment


        #4
        thisis the thread I was thinking of

        http://community.actinic.com/showthr...t=contact+form

        personally all my forms never disclose the sending address, and now I've started to use capcha too. see pinbrook.net/contact.php

        seems to be holding up so far

        Comment


          #5
          thanks Jo (again...)
          I'll check capacha also- this is the sort of thing I was thinking of researching but hadn't got round to it. However 250+ spoof mails a day is a fairly large prompt!
          Ben
          Ben
          http://www.fairygoodies.co.uk

          Comment

          Working...
          X