PDA

View Full Version : RFD security breach? Spammers have my email address...



canook
Jan 27th, 2012, 07:29 AM
I've got a longstanding tradition of using a different email address for various sites. The email address I use for RFD has never, ever been used anywhere else.

Today, after something like 10 years with RFD, I started getting spam at that address.

I double checked the mail logs just to be sure it wasn't a case of "guessing". It wasn't - the email went directly to that email address.

RFD, you guys have a security breach.

Kaitlyn
Jan 27th, 2012, 11:44 AM
I've got a longstanding tradition of using a different email address for various sites. The email address I use for RFD has never, ever been used anywhere else.

Today, after something like 10 years with RFD, I started getting spam at that address.

I double checked the mail logs just to be sure it wasn't a case of "guessing". It wasn't - the email went directly to that email address.

RFD, you guys have a security breach.

Have you just received one email? It's quite possible the email was randomly "selected" by an automated system. It looks like a email of a domain you own - seeing any attempts to email other addresses on your domain? Whether they exist or not?

canook
Jan 27th, 2012, 01:46 PM
Have you just received one email? It's quite possible the email was randomly "selected" by an automated system. It looks like a email of a domain you own - seeing any attempts to email other addresses on your domain? Whether they exist or not?

Thanks for the response, Kaitlyn.

Yes, I did check for that in the server mail logs and verified that there were no attempts to any other address, whether or not that address exists. It was a single message to an address that nobody but RFD has (and is not something like "info" or "webmaster" that always gets hit by spammers guessing legit addresses at any given domain).

If you outsource any of your mailings, that tends to be a major source of email addresses getting leaked...