12/01/2023
Christmas and Boxing Day madness has come and gone and so this a great time make sure you systems are secure and ready for the next rush.
Every year, whether it is Easter, Mother's Day, Singles day or even Mother's day, Internet Fraud increases.
In fact, recently, three of our ecommerce clients suffered BIN attacks, with one client receiving 25,000 fraudulent orders in just three hours!
Fortunately, we managed to block 99.62% of them. We had all the right systems in place thanks to CloudFare + WAF and a few other security configurations.
But due to the amount of orders and the short span of time we had a small 0.38% of orders that went through.
We quickly managed to clean the fake orders, process refunds and get everything sorted before any major business disruptions happened.
If you don’t have the right protection in place, this situation could rapidly turn into a disaster - potentially pushing a business into bankruptcy.
For instance, payment gateways such as Stripe charge a $25 flat rate for each lost dispute and you also must cover the loss of the purchase.
You can also get your SMTP email server may also be blocked due to the huge number of emails that send and bounce. The damage can be immeasurable.
As WooCommerce partners we want to contribute to the security of the WordPress community. That's why we have put together a small FREE plugin as a Xmas gift for anyone who has a WooCommerce site to protect against basic BIN Attacks.
This won't stop everything but it's the first layer of protection.
The plugin checks the IP address of the attacker and blocks the site if the system detects that they are trying to place multiple orders in a short period of time.
The plugin allows you to change:
- The number of seconds in between orders
- The number of orders
- The email where you want to get an alert
You can download the plugin for free in our website here:
https://bit.ly/Woocommerce-Bin-Attack-Protection
*Note - this Plugin does not block all BIN attacks. Every Woocommerce site has different configurations, weaknesses and defenses. If you are interested in a more complete solution, book a call with us.