Bug 302675 - bugs.kde.org - email addresses leaked
Summary: bugs.kde.org - email addresses leaked
Status: RESOLVED INTENTIONAL
Alias: None
Product: bugs.kde.org
Classification: Websites
Component: general (show other bugs)
Version: unspecified
Platform: unspecified Linux
: NOR normal
Target Milestone: ---
Assignee: Unknown
URL:
Keywords:
Depends on:
Blocks:
 
Reported: 2012-06-28 04:11 UTC by hyper_ch
Modified: 2012-11-23 23:45 UTC (History)
0 users

See Also:
Latest Commit:
Version Fixed In:


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description hyper_ch 2012-06-28 04:11:40 UTC
Hi there

For everywhere I sign up, I generate a unique email address. previously my email address for bugs.kde.org was leaked to spammers. So I created a new one.

Now the same has happened again:

--------------------


Return-Path: <info@live.com>
Delivered-To *************
Received: from localhost (localhost [127.0.0.1])
	by manager.roleplayer.org (Postfix) with ESMTP id E9E609E43212
	for <bugs.kde.org2@sjau.ch>; Thu, 28 Jun 2012 03:47:01 +0200 (CEST)
X-Virus-Scanned: Debian amavisd-new at manager.roleplayer.org
X-Spam-Flag: YES
X-Spam-Score: 28.339
X-Spam-Level: ****************************
X-Spam-Status: Yes, score=28.339 tagged_above=1 required=4.5
	tests=[ADVANCE_FEE_2=2.294, DEAR_FRIEND=2.604,
	FORGED_MUA_OUTLOOK=2.785, FREEMAIL_FORGED_REPLYTO=2.503,
	FREEMAIL_REPLYTO=2.775, FROM_MISSP_FREEMAIL=1, FROM_MISSP_MSFT=1,
	MISSING_HEADERS=1.207, MISSING_MID=0.14, RCVD_IN_BL_SPAMCOP_NET=1.246,
	RCVD_IN_BRBL_LASTEXT=1.644, RCVD_IN_PSBL=2.7, RCVD_IN_SORBS_WEB=0.614,
	RDNS_NONE=1.274, REPLYTO_WITHOUT_TO_CC=1.946, SPF_SOFTFAIL=0.972,
	SUBJ_ALL_CAPS=1.625, T_FROM_MISSPACED=0.01] autolearn=unavailable
Received: from manager.roleplayer.org ([127.0.0.1])
	by localhost (manager.roleplayer.org [127.0.0.1]) (amavisd-new, port 10024)
	with ESMTP id R0HBO-Defdv7 for <bugs.kde.org2@sjau.ch>;
	Thu, 28 Jun 2012 03:47:00 +0200 (CEST)
X-Greylist: delayed 69138 seconds by postgrey-1.32 at manager.roleplayer.org; Thu, 28 Jun 2012 03:46:59 CEST
Received: from mail.minedu.gob.bo (unknown [190.129.71.76])
	by manager.roleplayer.org (Postfix) with ESMTPS id 926F29E40186
	for <bugs.kde.org2@sjau.ch>; Thu, 28 Jun 2012 03:46:59 +0200 (CEST)
Received: (qmail 19600 invoked by uid 89); 28 Jun 2012 00:15:32 -0000
Received: from unknown (HELO User) (mcespedes@minedu.gob.bo@41.215.160.161)
  by mail.minedu.gob.bo with ESMTPA; 28 Jun 2012 00:15:31 -0000
Reply-To: <anitaschrumm@yahoo.com.hk>
From: "Captain:  Anita Schrumm"<info@live.com>
Subject: ***SPAM***PERSONALLY FOR YOU
Date: Thu, 28 Jun 2012 00:14:48 +0100
MIME-Version: 1.0
Content-Type: text/plain;
	charset="Windows-1251"
Content-Transfer-Encoding: 7bit
X-Priority: 3
X-MSMail-Priority: Normal
X-Mailer: Microsoft Outlook Express 6.00.2600.0000
X-MimeOLE: Produced By Microsoft MimeOLE V6.00.2600.0000
Message-Id: <20120628014701.E9E609E43212@manager.roleplayer.org>

27/06/2012

Dear Friend, 

  

I am Capt. Anita Schrumm MS RD LD, USA MIL - MEDCOM -AMEDCS; I was Staff Dietitian at Walter Reed Army Medical Center , before I was deployed to Camp Arifjan Kuwait, from there to Camp Al-Tadamun Adhamiyah-Baghdad, presently am in Camp Gibraltar Afghanistan on national duties. 

  

For security reasons, I will 'not' disclose certain information’s for now until you have  accessed the BBC website stated below to enable you have an insight on what I intended sharing with you, which I am confident you can handle if we are able to come to an agreement. 

  

http://news.bbc.co.uk/2/hi/middle_east/2988455.stm 

  

Kindly respond back to me after visiting the above website to enable us discuss further about the transaction.

Please send your response to my private email account: captaingraceschrumm1@rediffmail.com

Thanks, 
Captain:  Anita Schrumm MS RD LD



----------------------------


I think it's bad when email addresses just can be harvested.

Reproducible: Always
Comment 1 Teemu Rytilahti 2012-07-13 18:02:56 UTC
Perhaps related to 296756?
Comment 2 hyper_ch 2012-07-13 18:05:42 UTC
Do email adresses even ahve to be shown? Why not just make an email form instead of  showing the addresses.
Comment 3 Tom Albers 2012-11-23 23:45:33 UTC
Every bug report is also going to several mailinglists. This is indicated on the sign up page:

---
PRIVACY NOTICE: KDE Bugtracking System is an open bug tracking system. Activity on most bugs, including email addresses, will be visible to the public. We recommend using a secondary account or free web email service (such as Gmail, Yahoo, Hotmail, or similar) to avoid receiving spam at your primary email address.
---

Therefore we wont fix this bugreport.