How did spammer get usernames and emails
-
Our editors just got emails (previously reported by others) that “Someone has requested a password reset for the following account: https://ourdomain.com/
Username: “username”.”The return address was [email protected], and there is an X-PHP-Script header: https://www.plus.org.au/news/wp-login.php for 88.99.89.225.
So how did they get our email addresses and usernames? (And how might we prevent it in the future?)
The posts on our domain do not include the authors, let alone their emails.
- The topic ‘How did spammer get usernames and emails’ is closed to new replies.