Earlier quoted context omitted.
There are some big brain companies who will block you if their name appears in the email address. Like Discord. You can create an account, with discrod@example.com. But a seconde later you will get an email that your account got band. They know their way around IT security! /s
What you say is often true, but in the case of Discord, at least in my case, you are wrong. My Discord email address is discord@xxx.com, and I am still receiving emails from them.
Someone at BrowserStack is leaking users' email addresses
71–80 of 123 posts
Re: Someone at BrowserStack is leaking users' email addresses
#72> Like all good nerds, I generate a unique email address for every service I sign up to. This has several advantages - it allows me to see if a message is legitimately from a service, if a service is hacked the hackers can't go credential stuffing, and I instantly know who leaked my address. I think a lot of services will "de-alias" the email addresses from these tricks to prevent alts, account spam, and to still tar…
I just do @ . It is sometimes confusing by when interacting with customer support ;-)
Re: Someone at BrowserStack is leaking users' email addresses
#73Re: Someone at BrowserStack is leaking users' email addresses
#74Having your own domain and giving a unique email address to everyone... Is it correct to call this canary trapping email addresses? https://en.wikipedia.org/wiki/Canary_trap
Re: Someone at BrowserStack is leaking users' email addresses
#75BrightData is another company offering hosted browsers who has also recently leaked private data, although they did email customers to warn them. I wonder if both of these companies were compromised by a shared vulnerability in headless Chrome? Or else just a coincidence that 2 headless browser companies got hacked at the same time? I run a headless browser fingerprinting project and have found that URLs that I only…
Brightdata? Isn't that the israeli firm formerly called luminati that sells you shady "high quality residential IPs" that you can rotate to scrape the web?
Re: Someone at BrowserStack is leaking users' email addresses
#76Meta comment on the blog itself: Those theme options are really neat. Such a great touch for a personal blog!
Re: Someone at BrowserStack is leaking users' email addresses
#77>After a brief discussion, the emailer told me they got my details from Apollo.io The landing page for Apollo.io says it's a "AI sales platform". In other words, a CRM. My guess is that someone on the sales team uploaded the entire customer list for sales purposes, not realizing the privacy implications.
Re: Someone at BrowserStack is leaking users' email addresses
#78Earlier quoted context omitted.
What you say is often true, but in the case of Discord, at least in my case, you are wrong. My Discord email address is discord@xxx.com, and I am still receiving emails from them.
It happend to me when i created my account in 2025. Within seconds of verifying the address I got a email that my account was band for TOS violation. I than created a seconds account (within minutes from the same IP) only writing "dc" instead of "discord" and that worked. ¯\_(ツ)_/¯
It's always an unpleasant surprise when some company terminates a years-old, active and valid account because of a stupid policy change on their part.
Re: Someone at BrowserStack is leaking users' email addresses
#79>After a brief discussion, the emailer told me they got my details from Apollo.io The landing page for Apollo.io says it's a "AI sales platform". In other words, a CRM. My guess is that someone on the sales team uploaded the entire customer list for sales purposes, not realizing the privacy implications.
Working in sales but not being able to handle customer data responsibly (for whatever reason). Not a good look.
Re: Someone at BrowserStack is leaking users' email addresses
#80Earlier quoted context omitted.
I made no such assertion. Only that businesses do things in the business's interest more frequently than databreaches.
> Only that businesses do things in the business's interest That's not mutually exclusive with "someone on the sales team uploaded the entire customer list for sales purposes, not realizing the privacy implications". >more frequently than databreaches. You're fighting against both hanlon's razor and occam's razor here. The OP states the leak came from Apollo, and as other commenters have noted, Apollo specifically ha…
What is more likely? Everyone at an organization's IT, sales and data protection department is incapable of doing their job, or someone doesn't give a damn, calculating, that preventing such things from happening costs too much?