Hasty Briefsbeta

Bilingual

Evolution Mail Users Easily Trackable Part 2

10 months ago
  • #security
  • #email
  • #privacy
  • Evolution Mail has a DNS prefetching bug that exposes users' open times and DNS resolver IPs.
  • Another bug with 'link rel=preconnect' exposes the end user's IP address, which is worse.
  • A new test has been added to the Email Privacy Tester for this issue.
  • The Evolution Mail Project dismissed the issue, refusing to add a warning in the UI.
  • The author criticizes the project for mishandling the bug and failing users' privacy expectations.
  • The project locked the bug thread after feeling offended by the criticism.