Exit spam is suddenly the issue of the day.
I never looked into the "Top exits" list code on S9y, but it turns out that there was no checking to be sure that the URL presented to exit.php was an actual referenced URL. Some spammers found this out and started hitting blogs with exit spam this weekend.
I woke up today to find 25 exit references to 3 porn sites, and disturbingly, three "portal" sites. They're actually just somewhat cynical attempts to pretend to be a part of the Internet community, but obviously anyone who would use a tactic like this is part of the dark side.
The sites which attacked me (no links here):
macinstruct.net
linuxwaves.net
secureroot.org
I've removed the links, we're temporarily turning off all HREFs in the exits, and we're going to be reviewing that code and rewriting it.
JaBbA says screw 'em.