Re: Sender Spoofing via SMTP

From: Florian Streck (streck_at_papafloh.de)
Date: 11/04/05

  • Next message: Kirk Brady: "RE: isa server with single network card"
    Date: Fri, 4 Nov 2005 00:58:23 +0100
    To: security-basics@securityfocus.com
    
    
    

    On Thu, Nov 03, 2005 at 03:56:23PM -0000, brandon.steili@gmail.com wrote:
    > Hi List,
    >
    > I know this is a common issue that does not seem to be well addressed, but I was hoping you folks could give some suggestions. (preferably for Exchange 2003)
    > If I telnet to a system on the internet and perform the following:
    ...
    > The server will happily forward my mail to the internal mailbox without validating anything. I did not have to authenticate, I did not even have to provide a real sender on the system, I could make one up. Again, I know this is a common issue, the question is how can I prevent this from happening?

    Accept only digitaly signed mails (smime/pgp/...). Reject anything else.

    > With the proliferation of social engineers / phishers, etc I would like to try and find a way to prevent this, not because it is a big problem but because it might become a big problem.

    Considering Spam it already is a problem.

    Florian

    
    



  • Next message: Kirk Brady: "RE: isa server with single network card"

    Relevant Pages

    • Re: Remote telnet through firewall failing
      ... >> I have not found internet telnet to be the worst of the various security ... I was amazed that after months on the internet (directly to ... no firewall) there was no discernible problems. ... have over 250,000 BSD machines for their hosting services. ...
      (comp.unix.sco.misc)
    • Re: 45 days STUCK LIKE CHUCK. DNS / Mx record cant recieve emails
      ... I don't think it's Exchange since it's responding to telnet from the LAN. ... think it's the firewall, in which case it should be fixed if you run the ... still could be the Comcast router that's blocking the incoming connection. ... like Exchange not listening on the Internet NIC. ...
      (microsoft.public.windows.server.sbs)
    • Re: Have to go to web site twice before it comes up
      ... I've ruled out Internet Explorer. ... Telnet does the same thing. ... it's not limited to port 80. ... running on top of it that will have to be re-set up (e.g. DNS, DHCP, AD, ...
      (microsoft.public.win2000.networking)
    • Re: Now that I got my Uthercard....
      ... Apple IIgs Internet Applications that you might want to browse. ... telnet clients and not general terminal programs. ... the Uthernet link layer has an advantage over the LANceGS ...
      (comp.sys.apple2)
    • Re: Remote telnet through firewall failing
      ... > I have not found internet telnet to be the worst of the various security ... I was amazed that after months on the internet (directly to ... no firewall) there was no discernible problems. ... > firewall will open a port for that particular remote IP while the Java ...
      (comp.unix.sco.misc)