Author Topic: Personal Message Spam  (Read 5584 times)

Webmistress

  • Administrator
  • Sr. Member
  • *****
  • Posts: 280
    • Black Widow Web Design Ltd.
Personal Message Spam
« on: January 31, 2007, 12:22:04 AM »
This evening a spammer managed to use the forum's Personal Message system to send out a significant number of pornographic personal messages. The subject line for these messages includes the text:

Quote
URGENT MSG FROM ADMIN!!!

If you find such a message in your forum Inbox, you are strongly recommended to delete it unread.

We have had a problem with PM spam of this type before and have imposed limitations such as:

  • Removing PM privileges from Newbies
  • Limiting the number of recipients on a PM to 10
  • Limiting the number of PMs any one user can send in a hour to 10

However, following some indepth investigations, we now believe that this spammer is using a script which can circumvent all such limitations. We are posting this as a serious security bug on the Simple Machines Coding site but, unless/until the developers can come up with a solution, all we can do is apologise.