Earlier quoted context omitted.
Seriously, if any site owner has even a half of a brain, he should stay away from this shit. Disposable email exists for a reason.
That is not true at all. If your site is just a chat forum and you don't mind spammers, sure let people use disposable emails. If your site involves money or auctions or credit cards.. letting disposable emails in can be very costly.
Detect up to 1327 disposable email providers with MailChecker
41–46 of 46 posts
Re: Detect up to 1327 disposable email providers with MailChecker
#42Earlier quoted context omitted.
I built this kind of check into my ecommerce sites for high-value items. They're disproportionally susceptible to fraud and carding for some reason, and implementing a "no free email provider" check has cut fraud on those items to zero.
I work at a financial institution and disposable e-mails are used by fraudsters all of the time. This is certainly better than my current blacklist.
Re: Detect up to 1327 disposable email providers with MailChecker
#43Earlier quoted context omitted.
Verification emails serve the purpose of ensuring that people don't sign up other people's email addresses.
And if they do, why is that bad?
https://plus.google.com/+LinusTorvalds/posts/DPY7H4a9Ma5
> Somebody signed a Change.Org petition in my name, and using a really old email address of mine.
> So since I apparently had an "account", I reset the password, and made a petition of my own.
> Change.Org - please change your dickish ways. Ok?
Re: Detect up to 1327 disposable email providers with MailChecker
#44Re: Detect up to 1327 disposable email providers with MailChecker
#45Earlier quoted context omitted.
Because of the script that destroys email addresses by signing them up for 5000 mailing lists.
What script is that? Never heard of such a thing.
It didn't require a script, either. When mailing lists and other automatic email sources let you add destination addresses without closing the confirmation loop by sending a test email, you can denial-of-service email addresses with just an SMTP client.
The really nasty part about this attack is that it's not just bandwidth amplification. Normal amplification attacks go away when the attacker decides to stop sending packets. With mailing subscriptions, the badly-configured mailing lists keep sending the attack on their own.
Re: Detect up to 1327 disposable email providers with MailChecker
#46Earlier quoted context omitted.
That is not true at all. If your site is just a chat forum and you don't mind spammers, sure let people use disposable emails. If your site involves money or auctions or credit cards.. letting disposable emails in can be very costly.
If a quick-and-dirty domain check on an email address is more secure for fraud detection than credit card data, then that says a lot about how broken the whole credit card system is. No surprise, of course. Sad that Bitcoin blew its chance to replace this crap.
Now if you want to spam 500 million credit cards on my system, you are going to need to at least make them from some common domains, which I can block down the road. If you are using an email hiding service, way easier for you.
Not sure bitcoin matters, if I had users paying with bitcoin in an app I would STILL blacklist certain email domains.