our mediawiki account request feature is being misused for ddosing peoples
email addresses apparently.

Can we somehow inhibit people from requesting an account and having an email
sent to them from the wiki?  see attached bounce message, we've been getting
tons of these.

-jake
This is the mail system at host sudoroom.org.

I'm sorry to have to inform you that your message could not
be delivered to one or more recipients. It's attached below.

For further assistance, please send mail to postmaster.

If you do so, please include this problem report. You can
delete your own text from the attached returned message.

                   The mail system

<[email protected]>: host
    alt1.gmail-smtp-in.l.google.com[142.250.115.27] said: 450-4.2.1 The user
    you are trying to contact is receiving mail at a rate that 450-4.2.1
    prevents additional messages from being delivered. Please resend your
    450-4.2.1 message at a later time. If the user is able to receive mail at
    that 450-4.2.1 time, your message will be delivered. For more information,
    go to 450 4.2.1  https://support.google.com/mail/?p=ReceivingRate
    586e51a60fabf-27d0b5e890bsi3796520fac.281 - gsmtp (in reply to RCPT TO
    command)
Reporting-MTA: dns; sudoroom.org
X-sudoroom-org-Queue-ID: A04B5C04CE
X-sudoroom-org-Sender: rfc822; [email protected]
Arrival-Date: Fri, 20 Sep 2024 05:51:35 -0700 (PDT)

Final-Recipient: rfc822; [email protected]
Original-Recipient: rfc822;[email protected]
Action: failed
Status: 4.2.1
Remote-MTA: dns; alt1.gmail-smtp-in.l.google.com
Diagnostic-Code: smtp; 450-4.2.1 The user you are trying to contact is
    receiving mail at a rate that 450-4.2.1 prevents additional messages from
    being delivered. Please resend your 450-4.2.1 message at a later time. If
    the user is able to receive mail at that 450-4.2.1 time, your message will
    be delivered. For more information, go to 450 4.2.1
    https://support.google.com/mail/?p=ReceivingRate
    586e51a60fabf-27d0b5e890bsi3796520fac.281 - gsmtp
--- Begin Message ---
Someone, probably you from IP address 85.112.69.84, has requested an account 
"OvIdvWTXwlYx" with this email address on Sudo Room.

To confirm that this account really does belong to you on Sudo Room, open this 
link in your browser:

https://sudoroom.org/mediawiki/index.php?title=Special:RequestAccount&action=confirmemail&wpEmailToken=67c84ace43a7a26ad3f4d3131f7ef94f

If the account is created, only you will be emailed the password.
If this is *not* you, do not follow the link.
This confirmation code will expire at 12:51, 20 October 2024.

--- End Message ---
NOTE: emails to the Info list were sent to an individual email address (such as 
[email protected]) with the PRESUMPTION OF PRIVACY. They may include personal 
information which the sender would not have sent to a public list (such as 
sudo-discuss). If you must forward messages to a public list, please take great 
care to REMOVE SENSITIVE INFORMATION!

_______________________________________________
Info mailing list -- [email protected]
To unsubscribe send an email to [email protected]
_______________________________________________
sudo-sys mailing list -- [email protected]
To unsubscribe send an email to [email protected]
More options at 
https://sudoroom.org/lists/postorius/lists/sudo-sys.sudoroom.org/

Reply via email to