User Registration Exploit?
-
Is it possible than someone can use the WordPress registration as a SPAM/DoS attack mechanism? There is no captcha on the registration form and the form is always at the same url “https://blog/wp-login.php?action=register”.
What prevents someone from creating a program, data-mining all websites with this url from Google, and basically setting up a bot to constantly create new users in ad infinitum?
I don’t understand why in this day and age, there isn’t at least a captcha on this registration page….is there a way to add one?
Viewing 3 replies - 1 through 3 (of 3 total)
Viewing 3 replies - 1 through 3 (of 3 total)
- The topic ‘User Registration Exploit?’ is closed to new replies.