• jet@hackertalks.com
    link
    fedilink
    English
    arrow-up
    10
    ·
    1 year ago

    As a person who sets up a specific email address, for each one of the corporations I do business with. I can personally attest to the fact that Comcast discloses personal identifying information to third parties and spammers, for years if not decades. I’ve had to destroy and create three different email addresses just for Comcast because they get spammed, I say spammed, but also the extortion scams, fishing attempts. Pretty evil stuff. Specifically to these Comcast only addresses.

    So they may have made a disclosure today, but either they have other leaks that are longer lasting, or their normal business practices are terrible

    • 0x0001@sh.itjust.works
      link
      fedilink
      English
      arrow-up
      3
      ·
      1 year ago

      I do this as well, and have two emails specifically with xfinity from different regions, I own the domains and use gsuite

      None of my xfinity emails have had any spam at all, I just now looked, I wonder if it’s because my emails have the word comcast in them?

      • jet@hackertalks.com
        link
        fedilink
        English
        arrow-up
        2
        ·
        edit-2
        1 year ago

        Xfinity@

        Xfinity2@

        And now I’m at xfinity3@ with the others now blackholed.

        • 0x0001@sh.itjust.works
          link
          fedilink
          English
          arrow-up
          1
          ·
          1 year ago

          Mine were made in 2020 and 2021, sameish timeframe? Do you use an email provided service or run your own?

          Mine are comcast@ and REGIONxfinity@ both on the same domain, I just went through every single email they’ve ever received and only see xfinity emails. I’ve been doing this for almost four years and haven’t managed to catch any company out yet!

          • jet@hackertalks.com
            link
            fedilink
            English
            arrow-up
            2
            ·
            edit-2
            1 year ago

            Custom domain, email hosted first by Google, then by tura

            This could be regional differences. Maybe the office I interact with has loser security controls, or sends customer information to a third party who has loop security controls based on the region. I don’t know it’s interesting though

            Checking the email logs. The first fishing emails were the here’s a huge bill for a service you didn’t order, call this number to cancel. Then it started to escalate.