Search  
You are here:  Articles    
Article Categories Minimize

Articles Minimize

Current Articles | Categories | Search

Using bounce back messages to send spam
Posted by Walleye on Monday, April 03, 2006 :: Last Updated on Monday, January 01, 2007:: Views 1473

   

I have noticed a great increase of bounced messages with spam attached... how sneaky are these guys getting. Sad that many are having to turn off bouncing to combat spam.

I have notice a great increase of bounced messages with spam attached... how sneaky are these guys getting. Sad that many are having to turn off bouncing to combat spam.

http://www.net4now.com/isp_news/news_article.asp?News_ID=3509


SoftScan announced today that in a bid to beat detection and increase the likelihood of their messages being read, spammers are increasingly using a new twist on joe-jobbing (forging the sender’s email address) that may lead to organisations abolishing the bounce back message.

“The change in tactic demonstrates that spammers are having an increasingly hard time getting through anti-spam technologies and persuading users to open up their emails and at least read them,” comments Bo Engelbrechtsen, corporate communications manger of SoftScan.


Instead of forging the sender’s email address, which is easily detected by anti-spam technologies, and sending it directly to the target company; spammers are deliberately sending their messages to an email address they know does not exist at high profile company with the “from” email address of the target company.

The email is then bounced as an unrecognised email address and sent back to the “sender”. Since the IP address and the email domain address now match, the email isn’t picked up by anti-spam technology and the email, complete with the spammer’s original and intended message is passed to the end user.
Spammers are now relying on the fact that users are more likely to open and the read the bounce back because it has come from a legitimate source.

Bo Engelbrechtsen continues, “No respectable company wants to see its domain name linked to spam. Although bounce back messages are helpful in letting senders know whether or not their message reached the recipient, in order to stop the abuse of their domain name many companies are already starting to turn off their bounce back messages.”

Previous Page | Next Page


Donations Minimize

Find our site useful? Make a donation to show your support

Donate

logo_ccMC.giflogo_ccVisa.giflogo_ccDiscover.giflogo_ccAmex.gif

ArGoStuff Supporters

 


News from ArGoSoft Minimize
1 2 3 4 5 6


Mail Server v1.0.5.9

Mail Server

  • Added additonal tracking of connections for SMTP and POP3: if they stay on for over 30 minutes, they are getting disconnected;
  • Fixed a problem with mailbags when they accept mail only when main server is down: in case of timeout mailbags were still treating the main server as "available" and rejecting mail;
  • Changed color coding of logs. Now red denotes only errors, delivery is green, POP3, SMTP, IMAP connections - blue;

Web Interface

  • Fixed a problem, when session timeouts were causing errors in the windows system logs;
1/2/2009 1:52:01 PM
Happy Holidays to All!!!

Just wanted to wish everybody Happy Holidays, and wish all the best to all in 2009

Looking forward to work with you next year!

Archie

12/23/2008 10:13:32 PM
Mail Server Pro v1.8.9.6
  • Improved Export to .NET function - sometimes email messages were not getting exported, because the database of email messages was not up to date. Now each folder gets rebuilt before the export function;
12/2/2008 11:19:02 PM
Email Address Validator

We have discontinued our email address validation service, and launched new web site:

http://www.emailaddressvalidator.com

It provides the web service interface to validate lists of email addresses. We hope that our service will help to reduce unwanted traffic on Internet, ensuring that mail is sent only to valid and legitimate addresses.

Sign up now, and get 150 free validations!

11/25/2008 10:13:02 AM
Mail Server v1.0.5.8

Mail Server

  • Mailbags now have an option to accept mail only when specified server is down - will help to fight with spam which attempt to deliver mail bypassing the main server;
  • When delivering mail, if main exchanger returns 4xx reply (temporary problem), the server will not try other exchangers, will retry later the main exchanger;
  • Server options moved from registry to a XML file. 64 bit versions of Vista and 2008 server appear to be having access rights problems to the Windows registry, and the change will make our server more compatible with 64 bit versions;
  • Added an option to specify the number of lines on the log screen, when using the user interface. Was causing memory problems if left running for long time;
  • Fixed couple of problems, which were showing when SQL server was set up to use case sensitive SQL statements;
  • Made changes in the remoting interface to allow logging in using aliases;

Web Interface

  • Made changes to allow logging in using aliases;
  • When viewing folders, web interface now displays the name of logged in user;
11/12/2008 2:31:31 PM


1 2 3 4 5 6

Protect Your Computer today withGet AVG Today


Home:ArGoStuff:Forums:Articles:Cyber Security Tips:FAQ:Downloads:Links
Copyright 2006-2008 by ArGoStuff Terms Of Use Privacy Statement