Slashdot Mirror


Gravatars Can Leak Users' Email Addresses

abell writes "Gravatar offers a global avatar service, using an MD5 hash of the user's email as avatar ID. This piece of information in some cases is enough to retrieve the original email address. Testing a simple attack on stackoverflow.com, I was able to determine the email addresses of more than 10% of the site's users."

2 of 170 comments (clear)

  1. Slashdot users are faggots by Anonymous Coward · · Score: -1, Troll

    You are all faggots. Mod me down if you agree with the faggot that you are raging faggots.

    1. Re:Slashdot users are faggots by Ethanol-fueled · · Score: -1, Troll

      Not true. Faggots bathe regularly and dress themselves every morning.