[1742] in WWW Security List Archive

home help back first fref pref prev next nref lref last post

Re: Capturing E-Mail Address of

daemon@ATHENA.MIT.EDU (Robert S. Muhlestein)
Wed Mar 27 23:26:09 1996

Date: Wed, 27 Mar 1996 17:16:55 -0800 (PST)
From: "Robert S. Muhlestein" <robertm@teleport.com>
To: Matthew Lewis <Matthew_Lewis@cpqm.saic.com>
cc: WWW Managers <www-managers@lists.stanford.edu>,
        www-security <www-security@ns2.rutgers.edu>
In-Reply-To: <n1384180202.95089@cpqm.saic.com>
Errors-To: owner-www-security@ns2.rutgers.edu

On 27 Mar 1996, Matthew Lewis wrote:

> >From my HTTP server, what information can be captured, without prompting a
> user, by a CGI script or Java applet?  I am aware of the the information in
> the log file, but I am interested in any other information that might be sent
> by a web browser, specifically a user's e-mail  address.  Any help would be
> appreciated.

I'm still able to snatch a few email addresses and full names from people 
running Netscape 2.x with JavaScript active:

http://www.teleport.com/~robertm/

Robert Muhlestein
Teleport Creative Services
CGI/Java Guy
cgi@teleport.com


home help back first fref pref prev next nref lref last post