Any email addresses available in the page source COULD be harvested by
spam crawlers, if its NOT available in the source there is NO way via
HTTP you can view Coldfusion variables. (without some form of hack)

This would be a MASSIVE security hole.

Thanks.

-----Original Message-----
From: Les Mizzell [mailto:[EMAIL PROTECTED]
Sent: Thursday, December 18, 2003 10:24 AM
To: CF-Talk
Subject: Re: Hiding an Email Address from harvesters

Pete Ruckelshaus wrote:

> How are they able to harvest email addresses from CFMAIL tags?  I
don't
> understand how this would even be possible if the page is coded
properly?

I don't exactly know, but the harvesters are getting smarter and
smarter. I did a test page with a standard CFMAIL on it, using a new
email address I set up for just the test, and I got my first 10 SPAM
email at that address less than 24 hours later.

Believe me, they ARE parsing CFMAIL tags and acquiring the addresses.

Will try another test setting the address in the application file and
see what happens.

--
Les Mizzell
-------------------------
"Mihi placent, O Pincerna!
  Virent ova! Viret perna!
  Dapem posthac non arcebo.
  Gratum tibi me praebebo."
[Todays Threads] [This Message] [Subscription] [Fast Unsubscribe] [User Settings]

Reply via email to