We just received about 60 (?) fake account registrations - this time not even trying to pretend any identities, just kind of DDoS.
What it interesting, that this time, they did not use known #TOR exit nodes and the IPs are not known by existing blacklists. Instead, the attack seemed to came from pool of IP addresses owned by Japanese companies and from Japanese mailservers...
We need to figure identity of operators of this botnet. Let's setup some place to share the IP addresses used by botnet. If we want to keep #Fediverse and #Mastodon registration open, we must federate our blocklists too...
CC @tante
@xChaos which mail domains did they use? Often it helps to just block disposable email servers in the mastodon admin