Running my own newsletter using #
Mailman since 20 years, manually confirming every request. Luckily. Last night and this morning i had the very first bot attack in all that time, using an online membership request form to bomb request with auto-generated email addresses, btw often but not always starting with the letters 
b'.
What could generally be done to discard those requests automatically? 
Setting up a honeypot within the online form, using an empty subject or name field invisible to a human visitor (using CSS), then discarding those requests automatically, which fill those invisible fields nonetheless? 
Further suggestions anyone? Would be much appreciated!
#
BotAttack #
newsletter #
honeypot #
antispam