Live data from Hacker News

Someone at BrowserStack is leaking users' email addresses

shkspr.mobi

121–123 of 123 posts

Re: Someone at BrowserStack is leaking users' email addresses

#122
I remember the first and only time I used browser stack, almost 10 years ago. I found myself logged into the Google account of somebody else. I could freely access their email, drive files, everything. I had reported this to them, and they quickly dismissed it as impossible. The dismissal itself was enough proof for me of horrific practices.

Re: Someone at BrowserStack is leaking users' email addresses

#123
post #95

Earlier quoted context omitted.

How is this possible for any normal person with a work provided 365 account?

You can use the +label method on M365 work accounts, like first.last+label@workdomain.com Outlook rules match on them too, for rules.

All companies know this and it is trivial to strrip the +label from the address automatically.

If you are using +labels on your addresses and think you are being clever enough to spot companies that sell your data, I can tell you I have personally seen companies use code to strip these labels before selling profiled data.

Post reply on HN