Re: Spamming horror

From: Jem Berkes (jb_dontuse@pc9.org)
Date: 03/14/02


From: Jem Berkes <jb_dontuse@pc9.org>
Date: Thu, 14 Mar 2002 01:00:49 GMT


> Something like four days ago, I started getting strange junk mail on
> one of my email accounts. It is strange spam because it was returned
> mail that I had not sent myself. In fact, it appears the spammer is
> using my account (and certainly lots of others too, alternatively) as
> a mime Return-Path.

I saw this trick used several times, and notified a few major mail
providers about. The spammer prepares a message with YOUR return address
and sends to a bogus address at some provider. Then that server, if
configured improperly, accepts the email... thinks about it for a bit and
discovers there is no such user, and bounces the error back to you.

I was surprised when I discovered that postfix is vulnerable to this type
of abuse by default configuration.

-- 
Jem E. Berkes
IEEE member, Winnipeg

http://www.pc-tools.net/ Windows, Linux & UNIX software



Relevant Pages

  • Spamming horror
    ... I started getting strange junk mail on ... a mime Return-Path. ... want to close that account because of a m0tH3rfUx1ng spammer. ... It seems to be a well-organised spamming network, ...
    (comp.security.misc)
  • Re: Spamming horror
    ... >>> Something like four days ago, I started getting strange junk mail ... >>> on one of my email accounts. ... It is strange spam because it was ... Windows, Linux & UNIX software ...
    (comp.security.misc)

Quantcast