Rob Cottingham

Meeting your social media humor needs since 1963

Search:

19 May 2006

How to stop new-user spam on WordPress

Bookmark and Share
Category: Blogging

The past week has seen a flurry of new user registrations on this blog. Which is extremely suspicious, because I don’t actually have a link anywhere to the user registration page. (Also, they’re all using very similar-sounding Russian e-mail accounts.)

My conclusion? The latest spammer trick is apparently to try to gain access to WordPress blogs by creating new users, in the hope that the blog’s settings allow that user to post unmoderated comments or maybe even articles.

Here are two ways you can keep that from happening on your WordPress blog:

  1. The safest: turn off user self-registration. From your Dashboard, click on the Options tab. Right after the field for entering the admin e-mail address, you’ll see two checkboxes labelled “Membership”. Uncheck “Anyone can register.”
  2. If you don’t want to do that (for instance, if you want people to be able to register on your blog), you can set new users’ permissions as restrictively as possible. Beneath the “Membership” check boxes, you’ll find a pull-down menu labelled “New user default role”. Choose “Subscriber”.
  • Phillip Djwa

    Interesting, we’ve been inundated on a client’s forum with the same .ru spam registrations. They are able to get by the captcha deal which really sucks. Are they doing this by hand?

  • http://www.robcottingham.ca/roblog Rob

    I’d thought it was just a script, but if they’re getting past captchas, you’re probably right… it sounds like this is hands on keyboards.

  • http://blurt.info Evan Leeson

    wow…that’s a lot of hands, since my blog has been swamped with at least 100 of these in the last couple days…there must be some machine intelligence at work with humans just sitting there entering one captcha after another. Nice job for ex-party officials.

  • http://blurt.info Evan Leeson

    I just implemented http://wp-plugins.net/plugin/did_you_pass_math/ on my blog. We’ll see if this gets rid of them.

Watch my YouTube channel

Creative Commons License This work is licensed under a Creative Commons Licence. Please attribute to Rob Cottingham with a link to the content's original page on this web site. For more information, contact Rob at rob@robcottingham.ca.

Powered by WordPress, state-of-the-art semantic personal publishing platform

Find out about the other tools this site uses