Security Basics mailing list archives

Re: readnotify.com


From: Ansgar -59cobalt- Wiechers <bugtraq () planetcobalt net>
Date: Tue, 24 Jan 2006 22:03:17 +0100

On 2006-01-23 Ebeling, Jr., Herman Frederick wrote:
Does anyone know anything about a web site called
(http://www.readnotify.com/)?  If so does anyone know of anyway to
prevent it from sending it's return receipts to the sender?

I tell you, and you stop hijacking other people's threads. Deal?

readnotify.com is a so-called e-mail tracking service. Their subscribers
send their mail to them (by adding ".readnotify.com" to the recipient's
address) and they prepare a specially crafted mail from it and send it
to the recipient on the subscribers' behalf. In the default case the
tracking is done through HTML and webbugs. Have your mail clients
display plain text only and you'll be fine. Filters that catch webbugs
may help, too.

readnotify.com has a free trial offering, so you can toy with it
yourself.

Regards
Ansgar Wiechers
-- 
"All vulnerabilities deserve a public fear period prior to patches
becoming available."
--Jason Coombs on Bugtraq

---------------------------------------------------------------------------
EARN A MASTER OF SCIENCE IN INFORMATION ASSURANCE - ONLINE
The Norwich University program offers unparalleled Infosec management 
education and the case study affords you unmatched consulting experience. 
Tailor your education to your own professional goals with degree 
customizations including Emergency Management, Business Continuity Planning, 
Computer Emergency Response Teams, and Digital Investigations. 

http://www.msia.norwich.edu/secfocus
---------------------------------------------------------------------------


Current thread: