Stay Secure: How to Use the “+” Sign in Gmail to Track Account Leaks.

Pwndec0c0
2 min readJust now

Maybe some of you already know this but I still want to reiterate this since Data leaks, Unsolicited emails spams by third party and other malicious activities we’re still doubling every year. I conducted a “Unauthorised Testing” in some E-Commerce platform and try to get as much emails I can of their users, and to my surprise even just a simple google dork could reveal leaked emails as well.

I tried to notify this E-commerce platform in the Philippines for almost 2 years and still no response from them so imagine these big companies sometimes just don’t care about your data.

So when a Threat Actor found this vulnerability in their site this could potentially be leaked. And your email would be another target for Marketing scams, Spear phishing and other malicious activity.

By using the “+” strategy on your emails this could help us identify where our data was compromised and we could plan necessary things out(Updating our passwords, locking other connected data to it) or even a legal matter.

Tracking Breaches and Compromises

One of the lesser-known advantages of using the ‘+’ feature is its ability to help identify the source of a data breach or compromised personal information. By creating variations of your email address for different online…

--

--