Spam Blocking Information |
|
How Spammers Fool Whitelists - And How to Stop Them
Effectively stopping spam over the long-term requires much more than blocking individual IP addresses and creating rules based on keywords that spammers typically use. The increasing sophistication of spam tools coupled with the increasing number of spammers in the wild has created a hyper-evolution in the variety and volume of spam. The old ways of blocking the bad guys just don't work anymore. Examining spam and spam-blocking technology can illuminate how this evolution is taking place and what can be done to combat spam and reclaim e-mail as the efficient, effective communication tool it was intended to be. One method used to combat spam is whitelisting. Whitelists are databases of trusted email sources. The list may contain specific email addresses, IP addresses or trusted domains. Emails received from a whitelisted source are allowed to pass through the system to the user's email box. The list is built when users and email administrators manually add trusted sources to the whitelist. Once built, the catch-rate for spam can be close to 100%, however, whitelists produce an inordinate number of false positives. It is virtually impossible to produce an exhaustive list of all possible legitimate email senders because legitimate email can come from any number of sources. To get around this difficulty, some organizations have instituted a challenge-response methodology. When an unknown sender sends an email to a user's account, the system automatically sends a challenge back to the sender. Some challenge-response systems require the sender to read and decipher an image containing letters and numbers. The image is designed to be unreadable by a machine, but easily recognizable by a human. Spammers would not spend the time required to go through a large number of challenge-response emails, so they drop the address and move on to those users who don't use such a system. Whitelists are only partially successful and impractical for many users. For example, problems can arise when users register for online newsletters, order products online or register for online services. If the user does not remember to add the new email source to their whitelist, or if the domain or IP address is entered incorrectly, the communication will fail. Additionally, whitelists impose barriers to legitimate email communication and are viewed by some as just plain rude. Whitelists are not widely used by email users and administrators as a primary tool to fight spam because of the high number of false positives, and the difficulties in creating a comprehensive list of email sources. Because whitelists are not widely used, spammers typically do not develop countermeasures. As with other spam fighting techniques, whitelists are most effective when used in conjunction with other anti-spam tools. The Solution When used individually, each anti-spam technique has been systematically overcome by spammers. Grandiose plans to rid the world of spam, such as charging a penny for each e-mail received or forcing servers to solve mathematical problems before delivering e-mail, have been proposed with few results. These schemes are not realistic and would require a large percentage of the population to adopt the same anti-spam method in order to be effective. You can learn more about the fight against spam by visiting our website at www.ciphertrust.com and downloading our whitepapers. Dr. Paul Judge is a noted scholar and entrepreneur. He is Chief Technology Officer at CipherTrust, the industry's largest provider of enterprise email security. The company's flagship product, IronMail provides a best of breed enterprise anti spam solution designed to stop spam, phishing attacks and other email-based threats. Learn more by visiting http://www.ciphertrust.com/products/spam_and_fraud_protection today.
|
RELATED ARTICLES
Anti Trackback and Comment Spam Methods What is spam ? The 4 Ws of Junk E-mail Junk e-mail or spam has become the scourge of the modern computer world. It eats bandwidth. Spam is like a disease. It doesn't care about age, religion, wealth. It doesn't discriminate. Junk e-mail affects us all. Block Ads, Defeat Pop-Ups, and STOP Page Hijacking You're not alone! How to Fight Back BEFORE Youre Falsely Accused of Spam A friend of mine received a chilling email message from his ISP the other day. Someone had reported him as sending SPAM and the ISP warned that an additional SPAM complaint would result in losing his hosting service - period. No ifs, ands or buts! Winning the War On Spam For years I didn't worry much about spam. How To Stop Unwanted Email Spam You can stop unwanted email spam, you can choose to reduce spam email or you can do nothing and continue to be annoyed. Those are your only choices because spam email is not likely to go away. Is There A National Do Not Spam List? You may have already received a do not spam list email, seen a web site or even heard a radio advertisement that promises to reduce spam email just by submitting your email address. The Definition of Spam Spam can bring down your website faster than a speeding bullet, but what is spam? Originally, spam referred to unwanted emails. We all hate the tons of email we receive day after day trying to get us to buy that or click this. I can't go a day without someone trying to steal my personal information so they can get into my bank account. Does everyone else get the fake paypal emails? They look just like paypal emails, but usually if you look at the links they have ip numbers instead of paypal.com in the address. Obviously, letters from Nigeria, fake paypal emails, and the host of other either crooked or just plain annoying emails can clearly be defined as spam. Of course, email newsletters that have been subscribed to are wanted and would not be spam. I love getting my daily webmaster newsletters. They are great for helping me stay on top of what is going on in the website development world. What To Do When You Get Spam When you go to your mailbox and find pieces of junk mail mixed in with important correspondence, you throw it out. It is a mild nuisance and you probably don't even give it a second thought. Unfortunately, most people do the same when spam arrives in their inbox. They just delete it. Your Dolphin E-mail Caught In Spam Tuna Net? Let me ask a couple of questions: Eight Quick Tips For Stopping SPAM If you are buried in SPAM then you're not alone. It's been suggested that as much as 50% to 75% of the e-mail traffic on any given day is SPAM. Reading through SPAM is a waste of your time and it subjects you to potential viruses, trojan horses, and sexual material which can be quite offensive. Here are some tips on how to win the SPAM war: Blackhole or Fail - Which One Is Better For Your Mail Server? Very often SPAMMERS take advantage of catch-all email setup on webservers. Every email no matter what the recipients email address is will be caught by the default email account. It is highly recommended not to use catch-all email accounts and to discard SPAM send to non-existing email addresses. SPAM will clog up your SMTP server and consum resources like bandwidth and disk space in mailboxes. In most mail servers and web control panels (like cPanel) the user or admin can decide what will happen to emails with no existing recipient on the server. Refuse to the let emails onto the server and to let the sender's mail server deal with it (option: ":fail:") or to accept these incoming messages but then to delete them right away (option: ":blackhole:". SPAM: A Nutrious Food or a Waste of Time? Unless the filters on your computer are really good, you're getting at least an occasional SPAM message in your email Inbox. For most of us, we spend more time sorting through and deleting the SPAM than we care to. In fact, my husband told me tonight that of 30 messages he receives each day on our home computer 29 of them are SPAM. Challenge Response Spam Filters Explained As the flood of spam increases end users are looking for new and more efficient solutions to block spam. In turn software developers are knocking themselves out trying to come up with the killer app that will stop spam forever. I Must Be The Luckiest Person Alive! Spam I must be the luckiest person alive! My inbox is just crammed with good news, great advice, and millions in accounts just needing the ok from me. Right now, I've two million euros just waiting to be claimed. Some lotteries don't even need participation to return a winner, it seems. How Spammers Fool Bayesian Filters - And How to Stop Them Effectively stopping spam over the long-term requires much more than blocking individual IP addresses and creating rules based on keywords that spammers typically use. The increasing sophistication of spam tools coupled with the increasing number of spammers in the wild has created a hyper-evolution in the variety and volume of spam. The old ways of blocking the bad guys just don't work anymore. How To Stop Spam I imagine you have seen, heard about, or already know what spam is. But just in case you don't, it is unsolicited and unwanted emails that arrive in your email inbox from a person or company that you don't know. Spam - Its Whats For Breakfast The first thing I do every morning when I wake up is head for my computer. It holds the secrets to my day. I read my e-mails from several accounts, check my schedule on my Outlook calendar and even find out how much money I can spend that day from my bank's Web site. I'd be lost without my computer. Lockspam Free 3.0 Released! 6 August, 2004: Polesoft Inc., home of Professional anti spam software, announced today that Lockspam Free 3.0 (see also Lockspam Pro 3.0 in the end) is now available. Internet Tip of the Week: Outsourcing It's no secret that the US economy has slowed down, and many jobs have been outsourced overseas. Thousands of companies are still and are being forced to cut costs, decrease benefits, and even lay off employees. Many of those who lost their jobs, wil l try their hand at doing business on the Internet. |
home | site map |
© 2005 |