Joe-job spammers shift tactics to evade filters
Ricochet
Posted in Software & Security, 30th March 2006 00:02 GMT
Free whitepaper – Managing desktop software for fun and profit
Spammers are giving the old trick of joe-jobbing a fresh twist in a bid to fox email filters. Conventional joe-jobbing involves forging the sender's email address so that some poor innocent - rather than a spammer - has to wade through bounced messages sent to invalid email addresses.
Instead of forging the sender's email address (a trick that's easily detected by anti-spam technologies) spammers are deliberately sending their messages to an invalid email address at a high profile company using a forged "From" address at a target company. The email is then bounced as an unrecognised email address and sent back to the "sender". Since the IP address and the email domain address now match, the junk email message stands a better chance of avoiding detection by some anti-spam technologies. Because of this there's a better chance that an item of spam will arrive in the inbox of end users.
A spokesperson from the firm that identified the tactic, email security outfit SoftScan, said use of the tactic might lead to organisations abolishing the bounce back message. "No respectable company wants to see its domain name linked to spam. Although bounce back messages are helpful in letting senders know whether or not their message reached the recipient, in order to stop the abuse of their domain name, many companies are already starting to turn off their bounce back messages." ®
Free whitepaper – Managing desktop software for fun and profit
Analyst Keynote: The Register Agile Data Center Summit
Dell PowerEdge R710 solution with VMware ESX vs. Dell PowerEdge 2850 solution
Seven ways to lower storage costs

Sign up, sign up for The Register IT security newsletter
Microsoft's Windows 7 price gamble - and why it's flawed
Managing Desktop Software for fun and profit
Intel's flash new SSDs hit by bugs