Site Update: Spam Comments and XMLRPC

24hr Total - 611 Attacks 😎

Remember when I said I didn't want to bore you guys with all the stats behind the scene, and would instead only share 'special moments'?

Does 611 spam/xmlrpc attempts in 24 hrs count? 🤣

It seems that among the many different ways that some are using to try to impact the site are attempts to either add spam comments or gain access to the site's xmlrpc file (this is really an older feature used a while back for those who wanted to connect remotely to their website for admin purposes). This latter feature is rarely used by anyone, let alone me personally.

However these guys are really trying hard to get access.

But there's zero user data to access on the site.

And it is MOOVPAD policy (as previously published) that user data will be minimised and completely unidentifiable on our servers and systems moving forward.

So why am I sharing this information?

Boasting points. And to demonstrate that they were all filtered.

Do you even spam bruh? 😈

Screenshot 2021-12-06 at 21-54-43 GoDaddy Security
-2

CSR Statement

On a more serious Corporate Social Responsibility (CSR) level:

MOOVPAD has already stated publicly that data policies will include the minimisation of retained data, de-identification of all stored data, data storage on a dynamic and temporary basis, and advice to app users to never include personally identifiable information in data shared with others through  any of the MOOVPAD apps.

The above information and all other disclosures in relation to MOOVPAD site data are being made in the interests of full disclosure as part of ongoing CSR committments.

IP addresses have not been shown, for legal reasons.

Stay awesome,

EMH