SPAM/FRAUD

  • Unknown's avatar

    4-digit percentage of traffic increase this weekend. Good problem to have, right? Wrong!
    Lots of spam, high fraud risk orders. Using WooCommerce, Added Anti-fraud this weekend. Still getting lots of suspected spam orders, 100% fraud risk and yet the order still goes through.

    Order fails and then bam, they have somehow circumvented the site and complete guest check out with zero customer information.

    Has anyone seen this happen? Any ideas on how to resolve?

    WP.com: Yes
    Jetpack: Yes
    Correct account: Yes

    The blog I need help with is: (visible only to logged in users)

  • Hello,

    I understand that you are experiencing issues with spam orders and fraud risks, which is indeed very frustrating.

    Firstly, if you use the WooCommerce Anti-Fraud plugin and still receive a huge amount of fraud risk orders, it might be possible that the plugin settings are not properly configured. I encourage you to read about setting up a fraud threshold in this guide: https://docs.woocommerce.com/document/woocommerce-anti-fraud/

    Moreover, fraudulent orders are often placed by bots. One way to prevent bots from placing orders or creating accounts on your site is by utilizing CAPTCHAs in your login, account creation, and checkout pages. Here is a solid plugin for implementing CAPTCHAs https://wordpress.org/plugins/google-captcha/

    Another strategy to reduce the number of spam orders is to integrate an SMS/Email OTP (One Time Passcode) system during registration or checkout. This can help ensure that an actual human being is placing the order.

    As for handling guest checkouts with zero customer information, you might want to disable the ‘Guest Checkout’ option under WooCommerce settings. This way, customers need to register before they make a purchase, providing you their information. You can learn more about configuring checkout settings here: https://docs.woocommerce.com/document/configuring-woocommerce-settings/#section-14

    As part of your managed hosting with us on WordPress.com we use a more comprehensive security service called Jetpack which provides additional multi-layered spam and security protection. The service also includes a backup feature which ensures your data is safe: https://jetpack.com/features/security/

    Please implement these steps and monitor any changes in your spam and fraud risk orders. If challenges persist, let us know so we can explore other solutions.

  • The topic ‘SPAM/FRAUD’ is closed to new replies.