Original URL: http://www.channelregister.co.uk/2007/07/06/fuzzy_image_spam/
Spammers have turned a widely-used anti-spam trick - fuzzy text that computers cannot recognise - to their own advantage, according to the head of an anti-spam software developer.
The distorted text images are arriving in PDF files touting German penny stocks, in yet another iteration of the pump-and-dump scam that's been around for a while now (http://www.theregister.co.uk/2007/06/22/pump-and-dump_scam_pdf/).
What's different from earlier image spam is not only that these are PDFs, which adds an extra layer of complexity to the task of filtering out spam, but the text inside is deliberately distorted to make it extra-hard for computers to recognise.
Neil Cook, European technology chief at anti-spam specialist Cloudmark, called it "a kind of Turing test for spam filters".
He added: "We've been seeing a lot of PDF stock spams for the last 10 days or so, and there was another spike last night. Images are particularly easy for humans to pick up, but particularly hard for computers.
"These ones are distorted too - it's the same technique that websites use to keep spammers off by making visitors type in distorted text during registration, and now the spammers are using it on us."
Cook claimed that Cloudmark's spam fingerprinting technology is holding off the unwanted PDFs for now, but said that new detection techniques could be needed if image spam continues to grow. ®
Outlook grim as Cloudmark update crashes email clients (10 August 2007)
http://www.channelregister.co.uk/2007/08/10/cloudmark_dodgy_update/
Spammers dump images, switch to PDF files (23 July 2007)
http://www.channelregister.co.uk/2007/07/23/spammers_switch_to_pdf/
US claims top spam spot (9 July 2007)
http://www.channelregister.co.uk/2007/07/09/usa_spam_top_dog/
Trojan creates bogus webmail accounts to punt drugs (6 July 2007)
http://www.channelregister.co.uk/2007/07/06/webmail_trojan/
Storm Trojan feeds on Independence Day (4 July 2007)
http://www.channelregister.co.uk/2007/07/04/july_4_storm_trojan/
DoJ alerts US citizens to spam attack (29 June 2007)
http://www.channelregister.co.uk/2007/06/29/doj_issues_spam_warning/
US porn spammers guilty as charged (26 June 2007)
http://www.channelregister.co.uk/2007/06/26/can_spam_convictions/
Why is Hotmail so bad at spam? (15 June 2007)
http://www.channelregister.co.uk/2007/06/15/spam_nothotmail/
FBI logs its millionth zombie address (13 June 2007)
http://www.channelregister.co.uk/2007/06/13/millionth_botnet_address/
Anti-spam sites weather DDoS assault (11 June 2007)
http://www.channelregister.co.uk/2007/06/11/anti-spam_ddos/
© Copyright 2008