Insomnia (insomnia) wrote in lj_dev,
Insomnia
insomnia
lj_dev

email address harvesting and LJ

Recently, we had our first known case of someone harvesting email addresses from LiveJournal and spamming the users. It appears to have gotten a fairly large distribution, too. A copy of this spam is at the bottom of this post.

I guess my question would be... are we sure that there is no easy method that we aren't protecting against that allowed this spammer to harvest so many email addresses so easily? Is there some kind of system-generated list of email addresses that they might have found, or did they actually run some kind of script searching through userinfo pages to get such a large distribution?

Also, what actions, if any, can we take against the people who did this, so as to discourage others who would try the same thing? Personally, I think the best way to deal with people like this is to find out their personal information and to start making them the victims for a change...

m.

----Original Message Follows----
From: dxx@livejournal.com
Reply-To: amanda@kti.co.kr
To: judso@kti.co.kr
Subject: hi
Date: Sat, 30 Jun 01 14:36:51 EST

Drive a brand new car and go on a exotic
vacation. Thousands of people are making
HUGE monthly residual incomes, using our
proprietary online system and the power
of the INTERNET. Well show you how to make
a fortune right from the comfort of your home
in the next 72 hours.

For free information!!!!!!!!!!!


Click Here=> http://1075262055/members/h07j
Subscribe

  • cl-journal livejournal client

    Hey everyone, I'd like to present a livejournal client that I wrote to fulfill my needs but maybe there are other people that can find it…

  • SessionGenerate and ljloggedin

    Are there any information after release 86 and changes in cookies scheme to use sessiongenerate? It returns ljsession key, but this key is not enough…

  • Retrieving comments

    Hi, Is there a way to retrieve a list of comments made by user XXX (which may or may be not the currently logged in user) in the journals of users…

  • Post a new comment

    Error

    Anonymous comments are disabled in this journal

    default userpic

    Your reply will be screened

    Your IP address will be recorded 

  • 23 comments

  • cl-journal livejournal client

    Hey everyone, I'd like to present a livejournal client that I wrote to fulfill my needs but maybe there are other people that can find it…

  • SessionGenerate and ljloggedin

    Are there any information after release 86 and changes in cookies scheme to use sessiongenerate? It returns ljsession key, but this key is not enough…

  • Retrieving comments

    Hi, Is there a way to retrieve a list of comments made by user XXX (which may or may be not the currently logged in user) in the journals of users…