RE: [fw-wiz] appropriate response for mail break-in

From: Behm, Jeffrey L. (BehmJL@bvsg.com)
Date: 10/27/02


From: "Behm, Jeffrey L." <BehmJL@bvsg.com>
To: "'firewall-wizards@honor.icsalabs.com '" <firewall-wizards@honor.icsalabs.com>
Date: Sun Oct 27 20:28:20 2002

Are they actually using your account, or just spoofing the MAIL-FROM entry
in the header (Trivial to do).

I guess the question is, What leads you to believe they have "hacked" your
email account?

If it is of the trivial email header spoof, then reporting it to CERT would
not be fruitful, nor would changing your email password.

I personally have received email addressed to me, from me (with the header
spoofed). The delete function is typically how I deal with that.

-----Original Message-----
From: Ryan M. Ferris
To: firewall-wizards@honor.icsalabs.com

This is off topic. Someone is using my account to send me mail with
binary
attachments. I have contacted my provider and asked to change my mail
password. I have sent on the message header to them. What is the next
best
step? Do I file a report with CERT? Any thoughts?



Relevant Pages

  • Re: Objection rec.knives PLEASE IGNORE if you dont want to see an off topic post
    ... I ignore bragging, and I expect that if you post on a newsgroup about knives you post about knives, at least initially. ... It's at the point that if Robert posts a legitimate request, ... I definitely don't think you'd lose your account at all. ... Nah it's okay I don't feel the sarcasm at all, the header information wasn't meant for you. ...
    (rec.knives)
  • Re: PHP to Fax
    ... postings were sent from the same account. ... the relevant header lines. ... Since you seem to be totally incompetent (no surprise there): ... Note the posting account is identical. ...
    (comp.lang.php)
  • Re: Redemption, Help with selecting E-mail Account
    ... Using the x-header trick or using RDOMail.Account are roughly equivalent. ... [MVP - Outlook] ... Is there any way I can select an account to be used for sending a ... its value as the value of the header. ...
    (microsoft.public.outlook.program_vba)
  • Re: Redemption, Help with selecting E-mail Account
    ... Is there any way I can select an account to be used for sending a ... couple of named properties; one of them is the name of the account, ... its value as the value of the header. ... SMTP) or Exchange provider in Outlook to send a message, ...
    (microsoft.public.outlook.program_vba)
  • Re: How to kill spam?
    ... The e-mail client sends a RCPT TO command to the mail server saying who gets the message. ... Multiple RCPT TO commands are sent following by a single DATA command when sending a message to multiple recipients. ... be aware that some good senders may put you in the Bcc field which you cannot test because it was never included in the header portion of their message. ... You will need to define a whitelist rule to account for any senders whose mails you want to keep that do not put you in the To or Cc header. ...
    (microsoft.public.windowsxp.newusers)