Adding a captcha has so far blocked this particular exploit, but I agree with Programmerbear that Mailpoet seem not to be taking the issue very seriously (it’s not so long since they were asking users to stop requesting recaptcha support…)
The targets of the attack and IPs so far match the first two stated in Programmerbear’s blog post.