Remove your-work-email-address-is-your-works-email-address
article thumbnail

Your Work Email Address is Your Work's Email Address

Troy Hunt

Should work email addresses be used on a site of this nature? Does your place of work have a right to know? Let's start with a poll: At your place of work, does your employer have the right to access the contents of your corporate email account if necessary? Have an affair."

article thumbnail

Weekly Update 392

Troy Hunt

Let's get straight to the controversial bit: email address validation. A penny-drop moment during this week's video was that the native browser address validator rejects many otherwise RFC compliant forms. Unless you use the "pattern" attribute and a regex that permits it - argh!)

218
218
Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

Safe, Secure, Anonymous, and Other Misleading Claims

Troy Hunt

Your ex-wife. And perhaps they really did deliver on that promise, at least until one day last year: New sensitive breach: Faeces delivery service Shitexpress had 24k email addresses breached last week. Data also included IP and physical addresses, names, and messages accompanying the posted s**t. Shitexpress came along.

Internet 332
article thumbnail

Weekly Update 287

Troy Hunt

It mostly worked, I just forgot to press the "go live" button having worked on the (obviously incorrect) assumption that would happen automatically. So the plan was to schedule this week's session in advance then right on 17:30 at my end, go live. Download it for free.

IoT 273
article thumbnail

‘The Manipulaters’ Improve Phishing, Still Fail at Opsec

Krebs on Security

In January 2024, The Manipulaters pleaded with this author to unpublish previous stories about their work, claiming the group had turned over a new leaf and gone legitimate. 2021 piece, when one of Saim Raza’s known email addresses — bluebtcus@gmail.com — pleaded to have the story taken down. But on Jan.

Phishing 214
article thumbnail

Mozilla Drops Onerep After CEO Admits to Running People-Search Networks

Krebs on Security

to let users know when their email addresses or password are leaked in data breaches. In truth, if I hadn’t taken that initial path with a deep dive into how people search sites work, Onerep wouldn’t have the best tech and team in the space. ” The full statement is available here (PDF).

Media 252
article thumbnail

Airbnb scam sends you to a fake Tripadvisor site, takes your money

Malwarebytes

One of my co-workers who works on Malwarebytes’ web research team just witnessed a real life example of how useful his work is in protecting people against scammers. In the description the owner asked interested parties to contact them by email. So Stefan emailed the owner.

Scams 139