Re: Yet another anti spam approach

From: Nigel Wade (nmw_at_ion.le.ac.uk)
Date: 05/11/04


Date: Tue, 11 May 2004 15:17:47 +0100

Roedy Green wrote:
> I don't know quite how this works inside, but http://www.zaep.com/
> has a fresh approach to spam that should give 100% protection until
> the spam guys decide to attack it specially.
>
> When you send a message to somebody using it, you get an email back
> saying, please visit this URL one time only to get through the spam
> filter. If they visit in 5 days, then the original email and all
> successive ones are passed through.
>
> I wrote them asking how it works. I'm not clear if you have to host a
> website and mailserver for this to work.
>

It looks like a basic challenge/response system.

Very annoying for legitimate senders and generally bypassed by forging the
sender to be the recipient (most people send mail to themselves from
time-to-time and allow it through).

Add to that the number of people who receive false challenges because the
spam has their email forged as the sender and you've got a nice system for
creating even more collatoral spam.

-- 
Nigel Wade, System Administrator, Space Plasma Physics Group,
             University of Leicester, Leicester, LE1 7RH, UK
E-mail :    nmw@ion.le.ac.uk
Phone :     +44 (0)116 2523548, Fax : +44 (0)116 2523555


Relevant Pages

  • Re: Undeliveable Mail showing up from my domain postmaster (exchange 2
    ... sender just flood the spam to random recipients. ... This is what is called a "Reverse NDR attack". ...
    (microsoft.public.windows.server.sbs)
  • Re: content filtering
    ... opinion on experience that's limited to dealing with domestic US ... Considering that the large majority of spam originates from the US, ... Now all you need is some method of identifying the sender. ... 550 code would come to the attention of the mail server admin who could ...
    (microsoft.public.exchange.admin)
  • Re: Beware of ISP spam filtering
    ... They receive the mail and tell the sender that they've got it correctly. ... Then they open a new connection to the destination server to pass the ... OTOH, if the destination server says no, maybe because the spam or virus ... it can send a bounce to let the supposed sender ...
    (uk.telecom.broadband)
  • Re: anti-spam web page and email reply
    ... mail currently is spam with forged but functional sender addresses, ... them, including rejecting them in SMTP before accepting them, accepting ... manage by pushing the 'challenge' down into SMTP. ...
    (comp.mail.sendmail)
  • Re: Rules order not followed
    ... Must be a new rule action defined in Outlook 2003. ... I don't understand the "only on this machine" clause. ... It's spam so you don't want it marked green because then ... all you'll know is the message came from a known sender, ...
    (microsoft.public.outlook)