phishing emails

Paul Howarth paul at city-fan.org
Thu May 26 15:16:40 UTC 2005


STYMA, ROBERT E (ROBERT) wrote:
>>>There are a bunch of ways to collect emails.  In some cases, just
>>>visiting a site can expose your email address. 
>>
>>Pardon my flame (or my ignorance?)... but how would "just visiting a
>>site" expose your email address??
>>
> 
> In HTML you can imbed images.  The imbedded image path can be
> a URL.  If you make the URL start with FTP: instead of HTTP:
> the browser will use anonymous FTP to load the file.  The default
> in some browsers for the FTP: URL's is to use userid anonymous and
> password equal to your email address.  The site just collects the
> passwords which are email addresses.

Can anyone name a single current browser in which this happens (and 
where the address isn't made up, e.g. mozilla at example.com)?

Paul.




More information about the fedora-list mailing list