Bruce Schneier: Automated Denial-of-Service Attack Using the U.S. Post Office
April 19, 2003 |
co.mments
Counterpane: Crypto-Gram: April 15, 2003
If you type the following search string into Google -- "request catalog name address city state zip" -- you'll get links to over 250,000 (the exact number varies) Web forms where you can type in your information and receive a catalog in the mail. Or, if you follow where this is going, you can type in the information of anyone you want. If you're a little bit clever with Perl (or any other scripting language), you can write a script that will automatically harvest the pages and fill in someone's information on all 250,000 forms.
April 19, 2003 03:54 PM
Comments
I've made a mental note not to get on your bad side.
Trackback Pings
TrackBack URL for this entry:
http://www.dehora.net/mt/mt-tb.cgi/988