http://issues.apache.org/SpamAssassin/show_bug.cgi?id=5777





------- Additional Comments From [EMAIL PROTECTED]  2008-01-11 12:45 -------
> 3.  This puts the size of the blacklist under control of how efficiently 
> botnets can set up new free hosting sites.  Unfortunately that process 
> is probably very efficient.  It effectively cedes control of the 
> blacklist to the botnet operators.

I'm inclined to wonder if the freepage sites realy do have the infinite disk 
space, network connectivity, and processing abilities that botnets do.  Sending 
an email is a fairly minor operation, expecially if you put multiple recipients 
on the envelope.

But if the botnets are making a new spam page for each spam sent, then are 
doing probably 10x or more the work they would do to simply send a spam, and 
then they still ahve to send the spam.  So it cuts their productivity by a 
factor of 11 or so.  

I pick that 10x number based on the idea that it is probably  a multi-step 
transaction to register for and create a new page on a freepage site.  And that 
assumes that there is no error in making the page due to a name collision or 
some such.

Of course the freepage sites could probably completely stop this practice 
simply by putting a 10 second delay in the middle of the page grabbing 
process.  That would slow spammers down to 6 spams a minute per botnet process 
if they are not reusing pages.

(Assuming 1KB per page with no graphics and a small botnet able to send 100K 
new page transactions per second, the disk space on the server will disappear 
at the rate of 100MB/second.  If we assume a page is more like 35KB since it 
has some graphics, the server disk space will be disappearing at 3.5GB/second.  
Admittedly disks these days are around 350GB per each, but you would think a 
freepage owner would notice that he had to order a thousand new disk drives 
every day to keep up with new account usage.)



------- You are receiving this mail because: -------
You are the assignee for the bug, or are watching the assignee.

Reply via email to