« Jboss: Making deployment less of a PITA | Main | Cog: cars as software »

Bruce Schneier: Automated Denial-of-Service Attack Using the U.S. Post Office

Counterpane: Crypto-Gram: April 15, 2003

If you type the following search string into Google -- "request catalog name address city state zip" -- you'll get links to over 250,000 (the exact number varies) Web forms where you can type in your information and receive a catalog in the mail. Or, if you follow where this is going, you can type in the information of anyone you want. If you're a little bit clever with Perl (or any other scripting language), you can write a script that will automatically harvest the pages and fill in someone's information on all 250,000 forms.

April 19, 2003 03:54 PM

Comments

Andy
(April 20, 2003 03:45 PM #)

I've made a mental note not to get on your bad side.

Trackback Pings

TrackBack URL for this entry:
http://www.dehora.net/mt/mt-tb.cgi/988