Protecting your email with 'AT domain DOT com' is making it easier to find
varenhor.st
varenhor.st
I've only found three or four false positives in the five and a half years I've been with GMail.
For instance: IF X email is in the spam folder AND contains any of the words (Cialis, Viagra, Rolex, etc...) -> Move it immediately to the trash.
This cuts down the number of emails that stay in my spam folder by a huge margin, and makes it much easier to check for false positives.
That being said, I no longer even bother checking. I've been with Gmail for 5 years and I've never had a false positive.
That being said, you still have a point.
That said, I openly list my email address online (and have with the same address for 12+ years) and have really average filtering that leaves me deleting spam that slips through and chasing down false positives.
aside: for poor man's obfuscation (like in my HN profile) I do jhl805atgmaildotcom ... my belief is that this is hard to extract automatically.
([^\s]+)\s*[Aa][Tt] *([^\s]+)\s*[Dd][Oo][Tt]\s*[Cc][Oo][Mm]
matches text in an exemplar, it's worth checking out as a possible email address (assuming one is a low-down, good-for-nothing spammer)Yours is no harder to pull out automatically than the examples in the original article, and the above regexp took me under 2 minutes to write and verify. It's not your "obfuscation" that's saving you, it's gmail's spam filtering.
Found one false positive in the last six months, and even that was a mailing list so didn't matter.
Its pretty well established that “email AT domain DOT com” offers only marginal protection from spammers
And yet the 1.5 year experiment pointed out by eli indicates that this form of obfuscation is among the most effective ways to avoid spam:
http://techblog.tilllate.com/2008/07/20/ten-methods-to-obfus...
There used to be a website where a guy actually tried different methods for posting an email address on the web and then measured the number of junk messages at each address. Wish I could remember where I saw it.
A bit dated now, but using AT and DOT cut the spam to basically negligible levels.
Follow Postel's law and simply apply (ever cheaper) horsepower to filtering on the back-end + gray-listing & white-listing. This IS NOT rocket science people.
If one can write a regular expression to parse the "obfuscated" content, it's just one more rule in a markov validation chain in a data mining script.
"...Same as it ever was..."--The Talking Heads
This does have significant disadvantages, the worst being that users cannot cut and paste the address.
http://74.125.153.132/search?hl=en&q=cache:http://varenh...
tl;dr: you can search 'AT gmail DOT com' on google
I think this technique has been doing by spammers for decades.
The best way to prevent email harvest bots is to use DOM+JS, something like
<span id='my_span' my_chars='onix'>elec</span>tr
<script id='my_script' language='javascript'>document.write(document.getElementById("my_script").parentNode.firstChild.getAttribute('my_chars')+String.fromCharCode(0x74, 0141, 115-1))</script>
@gmail.com2. use id+mask@gmail.com or anything that can filter
3. something like this myemail_REMOVE_UNDERSCORE_AND_CAPITALIZED_TRAILING@gmail.com