[1742] in WWW Security List Archive
Re: Capturing E-Mail Address of
daemon@ATHENA.MIT.EDU (Robert S. Muhlestein)
Wed Mar 27 23:26:09 1996
Date: Wed, 27 Mar 1996 17:16:55 -0800 (PST)
From: "Robert S. Muhlestein" <robertm@teleport.com>
To: Matthew Lewis <Matthew_Lewis@cpqm.saic.com>
cc: WWW Managers <www-managers@lists.stanford.edu>,
www-security <www-security@ns2.rutgers.edu>
In-Reply-To: <n1384180202.95089@cpqm.saic.com>
Errors-To: owner-www-security@ns2.rutgers.edu
On 27 Mar 1996, Matthew Lewis wrote:
> >From my HTTP server, what information can be captured, without prompting a
> user, by a CGI script or Java applet? I am aware of the the information in
> the log file, but I am interested in any other information that might be sent
> by a web browser, specifically a user's e-mail address. Any help would be
> appreciated.
I'm still able to snatch a few email addresses and full names from people
running Netscape 2.x with JavaScript active:
http://www.teleport.com/~robertm/
Robert Muhlestein
Teleport Creative Services
CGI/Java Guy
cgi@teleport.com