Question
External bot accessing Marketo form data
1. Legitimate user comes to the website and submits a Marketo-based form
2. Marketo is updated with the user's data, new lead created
3. Over the next hours or days there are additional submissions on different versions of the same form on the website with the identical information as the original submission.
4. These new submissions are assume to be bots. They have a different IP address than the original submission, and are IP addresses associates with bot attacks.
What we can't figure out is how does the bot access the Marketo data?
We have had multiple legitimate external users from different companies & countries, submit forms, and the bot begin to submit new forms with their data. We have also replicated this from our internal network. This seems to rule out a malware infection at the client PC/Mac end of things.
Marketo support just says this is a bot and not a Marketo problem. They are incapable or interested in addressing the issue of how this bot has access to data stored in Marketo.
Anyone elese experienced this?
Any theories on how this could be happening?