Yesterday some scammers have used my website signup form through their fake website redirect to get people to sign up and steal their passwords. what actually happened
I believe, when users have signed up through their fake website using my form, they would just catch the passwords mid-process. They would spam my website at similar topic websites for users to sign up. There was a jump in sign-ups, and it caused my suspicious so I noticed this. Is there any way to block users from iframes registering? Or sending people from that link to a web page notifying them that they were trying to be scammed?