
One day the shop wakes up with dozens of pending orders from odd names, small amounts and made-up e-mails. Or with hundreds of new accounts nobody created. It is not bad luck: it is automatic programs testing forms, or trying stolen cards on small shops with low amounts. You stop it in layers, from the simplest to the strongest, and you clean up with care.
How to recognise it
| Sign | What it usually is |
| Many pending or failed orders in a short time, of low value | Card testing: someone is trying stolen numbers on your shop. |
| New accounts with random e-mails | Automatic sign-up by a program. |
| Meaningless names and addresses, all alike | A form filled in by a program. |
| A spike of checkout requests with no rise in visits | The program goes straight to checkout, without looking at the shop. |
Stopping it, in layers
|
|
|
|
|
|
|
Cleaning up
|
|
|
| Card testing can cost you. Operators may charge for declined payments or suspend the account if there are many. If you see a wave, speak to the operator at once, and speed up the layers above. |
| Look at the access logs at the time of the spike. If all the fake requests come from a few addresses, blocking solves it; if they come from thousands, the defence is the captcha and the operator. And keep the shop and plugins updated: updating without breaking anything. |
|
Under attack right now and the shop cannot cope? Tell us the address and the time of the spike, and we will go through the access logs with you. Open a support ticket |
|
SEE ALSO |
RECOMMENDED PRODUCT WordPress hosting One-click install, updates handled, and speed that holds up. from 5.940,00 Kz/mo (3-year plan, with coupon) See plans |
- 0 Users Found This Useful











