[Mailman-Developers] bugtraq submission warning: email address harvesting exploit

Chuq Von Rospach chuqui at plaidworks.com
Thu Nov 27 21:31:17 EST 2003


On Nov 27, 2003, at 2:26 PM, Colin Palmer wrote:
> re.sub('@', _(' at ') with re.sub(r'([\w\.-]+ at .)[\w\.-]+', r'\1...'
> which achieves a similar effect with ARCHIVER_OBSCURES_EMAILADDRS 
> turned
> on.
>

which is a no-op, since spambot's learned how to de-obfuscate that 
stuff years ago. False sense of security. All it really does is make it 
more difficult for people reading it, not the computers harvesting it.





More information about the Mailman-Developers mailing list