<?xml version="1.0" encoding="utf-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: petitions.pm.gov.uk Leak Your Email Address</title>
	<atom:link href="http://www.gravitystorm.co.uk/shine/archives/2007/12/13/petitionspmgovuk-leak-your-email-address/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.gravitystorm.co.uk/shine/archives/2007/12/13/petitionspmgovuk-leak-your-email-address/</link>
	<description>Notes From A Strange Place</description>
	<lastBuildDate>Wed, 11 Jan 2012 09:10:09 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.8.6</generator>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
		<item>
		<title>By: Andy</title>
		<link>http://www.gravitystorm.co.uk/shine/archives/2007/12/13/petitionspmgovuk-leak-your-email-address/comment-page-1/#comment-28770</link>
		<dc:creator>Andy</dc:creator>
		<pubDate>Sat, 05 Jan 2008 00:52:58 +0000</pubDate>
		<guid isPermaLink="false">http://www.gravitystorm.co.uk/shine/archives/2007/12/13/petitionspmgovuk-leak-your-email-address/#comment-28770</guid>
		<description>Oh no, Nia; it&#039;s *your* comments, and they fell into *my* spam filter!

:-)

I did chop out all of the email before forwarding it to them to try to prevent that, but hey-ho.</description>
		<content:encoded><![CDATA[<p>Oh no, Nia; it&#8217;s *your* comments, and they fell into *my* spam filter!</p>
<p> <img src='http://www.gravitystorm.co.uk/shine/wp-includes/images/smilies/icon_smile.gif' alt=':-)' class='wp-smiley' /> </p>
<p>I did chop out all of the email before forwarding it to them to try to prevent that, but hey-ho.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Nia</title>
		<link>http://www.gravitystorm.co.uk/shine/archives/2007/12/13/petitionspmgovuk-leak-your-email-address/comment-page-1/#comment-28764</link>
		<dc:creator>Nia</dc:creator>
		<pubDate>Fri, 04 Jan 2008 20:09:31 +0000</pubDate>
		<guid isPermaLink="false">http://www.gravitystorm.co.uk/shine/archives/2007/12/13/petitionspmgovuk-leak-your-email-address/#comment-28764</guid>
		<description>Your email probably fell at the pmo.gov.uk spam filter!

(3rd time lucky?  It _feels_ like its been a long two day week!)</description>
		<content:encoded><![CDATA[<p>Your email probably fell at the pmo.gov.uk spam filter!</p>
<p>(3rd time lucky?  It _feels_ like its been a long two day week!)</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Nia</title>
		<link>http://www.gravitystorm.co.uk/shine/archives/2007/12/13/petitionspmgovuk-leak-your-email-address/comment-page-1/#comment-28763</link>
		<dc:creator>Nia</dc:creator>
		<pubDate>Fri, 04 Jan 2008 20:08:46 +0000</pubDate>
		<guid isPermaLink="false">http://www.gravitystorm.co.uk/shine/archives/2007/12/13/petitionspmgovuk-leak-your-email-address/#comment-28763</guid>
		<description>YOUR email even</description>
		<content:encoded><![CDATA[<p>YOUR email even</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Nia</title>
		<link>http://www.gravitystorm.co.uk/shine/archives/2007/12/13/petitionspmgovuk-leak-your-email-address/comment-page-1/#comment-28762</link>
		<dc:creator>Nia</dc:creator>
		<pubDate>Fri, 04 Jan 2008 20:08:26 +0000</pubDate>
		<guid isPermaLink="false">http://www.gravitystorm.co.uk/shine/archives/2007/12/13/petitionspmgovuk-leak-your-email-address/#comment-28762</guid>
		<description>You email probably fell that the pmo.gov.uk spam filter!</description>
		<content:encoded><![CDATA[<p>You email probably fell that the pmo.gov.uk spam filter!</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Andy</title>
		<link>http://www.gravitystorm.co.uk/shine/archives/2007/12/13/petitionspmgovuk-leak-your-email-address/comment-page-1/#comment-28572</link>
		<dc:creator>Andy</dc:creator>
		<pubDate>Sun, 30 Dec 2007 23:41:29 +0000</pubDate>
		<guid isPermaLink="false">http://www.gravitystorm.co.uk/shine/archives/2007/12/13/petitionspmgovuk-leak-your-email-address/#comment-28572</guid>
		<description>Good point on the Hall of Shame - perhaps I expect so little that I so rarely check your site.

I think the filters just eat every html tag that isn&#039;t pre-approved, so it&#039;ll eat things with angled brackets but not html entities. It&#039;s not exactly rocket science but it does the job. You could argue that unknown tags should get escaped and white-listed html tags get left as-is, I suppose.

But as to your original point, I get lots of spam, and I so I see what dictionary words are being used. &#039;Sales&#039; appears to be the only one, along with a load of random personal names. Never any other nouns. I never heard back from the pmo.gov.uk guys, which makes them cretins in my opinion - at least they could have told me to bog off.</description>
		<content:encoded><![CDATA[<p>Good point on the Hall of Shame &#8211; perhaps I expect so little that I so rarely check your site.</p>
<p>I think the filters just eat every html tag that isn&#8217;t pre-approved, so it&#8217;ll eat things with angled brackets but not html entities. It&#8217;s not exactly rocket science but it does the job. You could argue that unknown tags should get escaped and white-listed html tags get left as-is, I suppose.</p>
<p>But as to your original point, I get lots of spam, and I so I see what dictionary words are being used. &#8216;Sales&#8217; appears to be the only one, along with a load of random personal names. Never any other nouns. I never heard back from the pmo.gov.uk guys, which makes them cretins in my opinion &#8211; at least they could have told me to bog off.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Sam</title>
		<link>http://www.gravitystorm.co.uk/shine/archives/2007/12/13/petitionspmgovuk-leak-your-email-address/comment-page-1/#comment-28569</link>
		<dc:creator>Sam</dc:creator>
		<pubDate>Sun, 30 Dec 2007 21:32:20 +0000</pubDate>
		<guid isPermaLink="false">http://www.gravitystorm.co.uk/shine/archives/2007/12/13/petitionspmgovuk-leak-your-email-address/#comment-28569</guid>
		<description>heh, I can beat your filters... The above post should say in the first line &quot;&lt;redacted&gt;@[redacted].co.uk</description>
		<content:encoded><![CDATA[<p>heh, I can beat your filters&#8230; The above post should say in the first line &#8220;&lt;redacted&gt;@[redacted].co.uk</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Sam</title>
		<link>http://www.gravitystorm.co.uk/shine/archives/2007/12/13/petitionspmgovuk-leak-your-email-address/comment-page-1/#comment-28568</link>
		<dc:creator>Sam</dc:creator>
		<pubDate>Sun, 30 Dec 2007 21:31:25 +0000</pubDate>
		<guid isPermaLink="false">http://www.gravitystorm.co.uk/shine/archives/2007/12/13/petitionspmgovuk-leak-your-email-address/#comment-28568</guid>
		<description>oh god, why on earth do you sanitise &lt;randomword&gt;</description>
		<content:encoded><![CDATA[<p>oh god, why on earth do you sanitise &lt;randomword&gt;</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Sam</title>
		<link>http://www.gravitystorm.co.uk/shine/archives/2007/12/13/petitionspmgovuk-leak-your-email-address/comment-page-1/#comment-28567</link>
		<dc:creator>Sam</dc:creator>
		<pubDate>Sun, 30 Dec 2007 21:29:48 +0000</pubDate>
		<guid isPermaLink="false">http://www.gravitystorm.co.uk/shine/archives/2007/12/13/petitionspmgovuk-leak-your-email-address/#comment-28567</guid>
		<description>&quot;Petitions&quot; is a word. It is possible that the spammers are sending to @[redacted].co.uk as this actually happens quite often to domains.

The only way to conclusively prove that it&#039;s the Petitions site that is doing it, is to assign them something that isn&#039;t a real word as an email address. If you want to make it recognisable, by all means use petitions.12Asdfr@[redacted].co.uk but definitely put some random data that will survive a dictionary attack in there. 

Side Note: Why haven&#039;t I made it to the Hall of Shame yet?</description>
		<content:encoded><![CDATA[<p>&#8220;Petitions&#8221; is a word. It is possible that the spammers are sending to @[redacted].co.uk as this actually happens quite often to domains.</p>
<p>The only way to conclusively prove that it&#8217;s the Petitions site that is doing it, is to assign them something that isn&#8217;t a real word as an email address. If you want to make it recognisable, by all means use petitions.12Asdfr@[redacted].co.uk but definitely put some random data that will survive a dictionary attack in there. </p>
<p>Side Note: Why haven&#8217;t I made it to the Hall of Shame yet?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Eddie</title>
		<link>http://www.gravitystorm.co.uk/shine/archives/2007/12/13/petitionspmgovuk-leak-your-email-address/comment-page-1/#comment-27974</link>
		<dc:creator>Eddie</dc:creator>
		<pubDate>Thu, 13 Dec 2007 10:21:34 +0000</pubDate>
		<guid isPermaLink="false">http://www.gravitystorm.co.uk/shine/archives/2007/12/13/petitionspmgovuk-leak-your-email-address/#comment-27974</guid>
		<description>Peterborough City Council are one of the sources of spam that I know about. They are the only leak that i have caught so far. Its so significant now that the email address given to them will be in my blacklist soon....</description>
		<content:encoded><![CDATA[<p>Peterborough City Council are one of the sources of spam that I know about. They are the only leak that i have caught so far. Its so significant now that the email address given to them will be in my blacklist soon&#8230;.</p>
]]></content:encoded>
	</item>
</channel>
</rss>

