Hi everyone,
This is a heads up, I would like to bring to your attention a "security hole" that have been found over at www.enformable.com in their comment section. It seems that if you make a comment on their site then your email address is also going to be stored on the page you made that comment on.
And because of this, anyone that would want to get hold of the email address you used to make the comment with on Enformable is going to be able to find it.
Now there is also those of you that use a service called Gravatar (it's what connects a picture / avatar with your email address) and that service too can be compromised to get hold of your email address, but that takes some extra manual work. However Gravatar is also used by the comment section that Enformable and many others use on their sites.
So what can you do to protect your email address when commenting on the internet? Well personally I can tell you right now that any form of protection is eventually going to fail.
So looking at the enformable comment section they have the following rules.
On their comment section when commenting it says that:
"Your name is required" and "An email address is required"
However it does not say it needs to be an valid email address, so for now I would simply use an made up email address, or you can create a "junk email address" that you only use for commenting.
I'm giving you these two options in this matter because I really don't think that enformable would change their comment section to a better more secure one. And this is simply because by doing so it is most likely that in the process they would also loose all the comments that have been made. And I don't think enformable would do that. But perhaps if more people put this to light they will make the necessary changes to protect email addresses.
This is a heads up, I would like to bring to your attention a "security hole" that have been found over at www.enformable.com in their comment section. It seems that if you make a comment on their site then your email address is also going to be stored on the page you made that comment on.
And because of this, anyone that would want to get hold of the email address you used to make the comment with on Enformable is going to be able to find it.
Now there is also those of you that use a service called Gravatar (it's what connects a picture / avatar with your email address) and that service too can be compromised to get hold of your email address, but that takes some extra manual work. However Gravatar is also used by the comment section that Enformable and many others use on their sites.
Example of gmail address of commenter displayed in source code on Enformable |
So what can you do to protect your email address when commenting on the internet? Well personally I can tell you right now that any form of protection is eventually going to fail.
So looking at the enformable comment section they have the following rules.
On their comment section when commenting it says that:
"Your name is required" and "An email address is required"
However it does not say it needs to be an valid email address, so for now I would simply use an made up email address, or you can create a "junk email address" that you only use for commenting.
I'm giving you these two options in this matter because I really don't think that enformable would change their comment section to a better more secure one. And this is simply because by doing so it is most likely that in the process they would also loose all the comments that have been made. And I don't think enformable would do that. But perhaps if more people put this to light they will make the necessary changes to protect email addresses.
No comments:
Post a Comment