• webdave

    (@webdave)


    The plug-in itself worked fine. It’s not amazing but does work and it did not cost anything for our non-profit to set up a donation page to our Stripe account. However, at some point our donation page was targeted by a script-kiddie out there that hammered the page with credit card attempts. In this scenario, someone with a list of credit card numbers would just try them on your site until one went through to figure which were usable and then go use that one. We did not want our site used that way though so we removed the donation button from the page. I was surprised half a day later when the attempts resumed even though the page no longer had the donation button. Somehow the form I had created in the plugin settings was still able to be posted to even though the button had been removed from the donation page. I’m not sure how that was possible. I’m not sure if it’s a flaw in the plug-in or deeper in WordPress. But to stop this misuse of our site I had to remove the plug-in completely. All in all there were close to 2,000 credit card attempts made on our site that day in just a few minutes total.

    Edit: The developer reached out and pointed out their built-in recaptcha support. I re-enabled the plugin and turned that on. Kudos for their prompt help!

    • This topic was modified 4 years ago by webdave. Reason: developer assisted!
Viewing 3 replies - 1 through 3 (of 3 total)
  • Plugin Support mbrsolution

    (@mbrsolution)

    Hi, first thank you for your 3 star review ?? We really appreciate it.

    Sorry to hear that you are facing some issue with the plugin. This is a review area, please create a support ticket from the following link and we will try to help:
    https://www.ads-software.com/support/plugin/stripe-payments/

    Kind regards

    Thread Starter webdave

    (@webdave)

    It’s good of you to want to help- I appreciate that. But I’m not in a position to work with you on it since I’ve already removed the plugin from my install completely. I will note in the support area a couple of thoughts in case you want them on your roadmap.

    Plugin Support mbrsolution

    (@mbrsolution)

    I have replied to your support thread.

    Thank you

Viewing 3 replies - 1 through 3 (of 3 total)
  • The topic ‘Remember to Enable Recaptcha Protection’ is closed to new replies.