I’m not sure what’s going on, but a lot comment spam from is getting through. Bad Behavior 1.2.2 is filtering everything but that one, it seems. (Yes, I did check the logs for activity.) I emailed Mike two days ago, but haven’t gotten a reply yet. For now, I’ve denied that IP access via .htaccess. Update: I didn’t realize that I wasn’t alone on this. Tom and Anne got hit, too.

  1. Weird! Fortunately, they didn’t get all the way through – I just meant that BB never stopped it at the gates. My moderation list must’ve stopped it or something, I don’t know.

    I hope Ann gets whoever it is! 🙂


  2. And, just to clarify, Michael Hampton hates false positives, so Bad Behavior will never be “100%”.

    So far, my blacklist has picked up all of the spam that BB has let through.


  3. Yeah, your blacklist definitely provides that extra level of “defense”. I’m still happy overall, and I didn’t mean to make it sound like I was complaining.


  4. I’ve noticed a huge increase on my site as well… although haven’t found a duplicate IP (although haven’t paid much attention aside from the IP shown in the WP Moderation queue). None have gotten through the need to be an approved commenter… but considering that this is recent… wonder if HashCash has been broken.


  5. Yeah, for me, Michael says it’s being manually entered in. So it’s not spambots. All spam is still being caught by WordPress built-in countermeasures, alongside with a moderation word list and word blacklist.


