(🤍 Nova) Everyone watch out! - the verification spam wave seems to be back. Assume that this will ramp up to how it was in 2025.

Admins: be ready to recieve reports and update your heuristics; also, be ready to rely only on content patterns (the bots could hijack accounts again, so the classic heuristics for finding spam bots will not work).

Users: if you get tagged in a post or reply saying that your account will be frozen or suspended unless you take action by clicking a link, please report it and verify with your admins before following the link. Following the link will get your account compromised.

#FediAdmin #MastoAdmin #FediSpam #MastoSpam

If you are trying hard to keep registrations on your instance open for everyone, like we do, try to block registrations from following mailservers:

howovur.com
contaco.org
hetzez.com
aliban.org
m3player.com
rescueence.com
meocon.org
choichay.com
easymailer.live
hiemail.net
gamintor.com
consistth.com
kontoko.org
nuoifb.com
bomnet.net

They are now so desperate that they even retry from the same mailservers...

#fedispam #fediban #fediblock #fediverse #botnet

The problem with following mail domains used for registration of propaganda spam bots is, that they are recycling them quickly, burn them after few registered accounts and don't reuse them. So exchanging block lists won't help, unless we would be able to update on almost hourly basis. But maybe someone will be able to recognize some patterns in domain ownership... who knows.

nembors.com
speakerion.com
img-free.com
emailcoffeehouse.com
openmail.pro
chamconnho.com
taxibmt.net
maillog.uk
anysilo.com
auslank.com
aiwanlab.com
noidos.com
gamegta.com
hh7f.com
perfectth.com
djkux.com
ampdial.com
capiena.com
nrlord.com
fergetic.com
fandoe.com
burangir.com
fermiro.com
bdnets.com
apocaw.com
haotuwu.com
fixwap.com
dwakm.com
elygifts.com
mail.wabblywabble.com
mail.wallywatts.com

Fediverse/ActivityPub is relatively spam-resistant scheme... if registrations are closed. Being doorkeeper, allowing registrations of serious new users open, is a challenge. But as I believe in open society, I don't want to give up. This is what *they* want from us ... to form isolated social bubbles.

#fedispam #kremlebots

I would like to register on this site to explore its features, connect with the community, and contribute valuable insights. I’m genuinely interested in engaging with discussions, learning from others, and sharing meaningful content that aligns with the platform’s purpose and values.

#Fediadmin #Spam #Fedispam #MastoSpam

Has anyone noticed a specific type of spam bot following people by the name "Jimmy Truth"? They always have the same copypasta bio besides a slight modification of location. I've had like, 7+ of them follow me and I've reported and blocked every single one.

#FediBlock #FediSpam #BotSpam #BotAccounts #Spam

@Chishiki611 Did you know that some instances have open registrations and never touched any button in their server settings.

Although, Many people have reported spam accounts from servers that doesn't enable "apply request only"

#mastoadmin #fedispam #fediverse #fediadmin

It seems we have Jimmy Truth doing the rounds on the fediverse, creating accounts all over the place. Makes a change from #Nicole

#spam #fedispam

🚨 Spam Alert

#spam #fedispam #fediverse

One of Enby.Life's scanners has been finding a lot of activity regarding the recent scams going around; I have found a bias in what it has seen, so I feel like I need to point it out and give a reminder: Just because the recent identity verification scam bots (that ask you to verify your identity and threaten you with an account suspension) have ran rampant on mastodon instances, that does not mean Misskey/Sharkey, Akkoma/Pleroma, GoToSocial, or any other instance is safe from being scammed. Although mastodon_support accounts are easier to spot on other (non-mastodon) instances, that may not be true for long (bad actors could start SharkeySupport accounts for example).

Please remember that when in doubt,
please contact your admins/moderators; if it is a scam, they will handle it for you.

#FediAdmin #FediSpam #FediScam #PSA
PSA: there's a new spam campaign hitting fedi, this one claims to be raising money for insulin and usually has a banner saying "black lives matter" or another progressive slogan.

You can recognize it in the usual ways:
1. Brand-new accounts doing nothing but ask for money.
2. Cold-messaging strangers with personal requests for a boost or donation.
3. Identical or near-identical accounts appearing all over fedi, primarily on open-registration instances.

If you see these accounts or get pinged by them, don't panic! Just report the profile and let your moderators handle it. The image below is an example of what to look out for.

Update: the spammers have adjusted their format a bit, see these posts for details:
-
https://en.osm.town/@thibaultmol/114744923583539270
-
https://en.osm.town/@thibaultmol/114745221813651432

Update 2: This particular round of spam also has a new trick, which is immediately blocking remote instance staff after they create an account. Fortunately, this does not prevent them from being reported! Just continue to report as usual, and moderators can view the content through their report UI (on Mastodon / Akkoma) or by switching accounts (on Misskey / Sharkey).

#PSA #Spam #Scam #FediSpam #MastoSpam #FediAdmins #MastoAdmins