• Welcome to the LegalBeagles Consumer and Legal Forum.
    Please Register to get the most out of the forum. Registration is free and only needs a username and email address.
    REGISTER
    Please do not post your full name, reference numbers or any identifiable details on the forum.

Change.org disclose thousands of emails in DPA breach

Collapse
Loading...
X
  • Filter
  • Time
  • Show
Clear All
new posts

  • Change.org disclose thousands of emails in DPA breach

    Change.org don't seem to like you trying to unsubscribe from their marketing emails after you have signed a petition. Alex Andreou on Twitter pointed out today that whilst searching for details on how to unsubscribe he was presented with a list of people's email addresses .... if you open the link it displays a page with the individuals full name and photo (if they have uploaded a profile image) and see which petitions they have signed.

    bit of an oopsy.

    Attached Files
    #staysafestayhome

    Any support I provide is offered without liability, if you are unsure please seek professional legal guidance.

    Received a Court Claim? Read >>>>> First Steps
    Tags: None

  • #2
    Re: Change.org disclose thousands of emails in DPA breach

    oops!!
    Debt is like any other trap, easy enough to get into, but hard enough to get out of.

    It doesn't matter where your journey begins, so long as you begin it...

    recte agens confido

    ~~~~~

    Any advice I provide is given without liability, if you are unsure please seek professional legal guidance.

    I can be emailed if you need my help loading pictures/documents to your thread. My email address is Kati@legalbeagles.info
    But please include a link to your thread so I know who you are.

    Specialist advice can be sought via our sister site JustBeagle

    Comment


    • #3
      Re: Change.org disclose thousands of emails in DPA breach

      Ars Technica's picked up on it http://arstechnica.com/security/2015...ail-addresses/

      And Change.org have made a statement

      Update: Change.org officials said the total number of exposed e-mail addresses was 100. They also provided the following statement:

      Our investigation showed that the users whose email addresses were exposed had pasted emails they had received from Change.org into public web pages. Google then indexed the unsubscribe link at the end of those emails. Those links contain the user's email address to make it easy as possible to unsubscribe, and that's how those email addresses appeared on the site.

      Previously, we were not preventing search engines from including those pages, but our engineering team is working on preventing that right now. They are also clearing the email addresses that have been indexed already, however this involves working with other search engines, which can take about 24 hours.
      #staysafestayhome

      Any support I provide is offered without liability, if you are unsure please seek professional legal guidance.

      Received a Court Claim? Read >>>>> First Steps

      Comment

      View our Terms and Conditions

      LegalBeagles Group uses cookies to enhance your browsing experience and to create a secure and effective website. By using this website, you are consenting to such use.To find out more and learn how to manage cookies please read our Cookie and Privacy Policy.

      If you would like to opt in, or out, of receiving news and marketing from LegalBeagles Group Ltd you can amend your settings at any time here.


      If you would like to cancel your registration please Contact Us. We will delete your user details on request, however, any previously posted user content will remain on the site with your username removed and 'Guest' inserted.
      Working...
      X