Karsten M. Self wrote:

This would also greatly reduce the tendency of TMDA to generate spam on
your behalf by forwarding your spam to the spoofed victim's address.

I'll take the bait.


Please consider that maybe the spammer (or worm) is at fault for joe-jobbing your account and NOT the person who (legitimately or automatically) replies to your joe-jobbed address.

My wife was recently the victim of a joe-job attack. I think one of her friends got a worm which tried to distribute itself to every email address it could find, using my wife's email address as its return address. She got many emails from legitimate people who saw this email message and replied saying either "Take me off your mailing list" or "Hey, did you know you have a virus?" when neither was true. This was not the fault of autoresponders or TMDA or vacation programs, or anything. It was simply people clicking "Reply" on email they received.

Are you suggesting that we should ban all MTAs, virus scanners, filters, C/R software, and vacation programs? Any of these can send a reply to the envelope and/or From: or Reply-to: address in an email, whether it is faked or not. Are you suggesting people stop replying to email so that joe-jobbing stops? I suppose if no one ever sent email again it would clear up the spam problem, as all email would then be spam, but I'm not sure that's the best solution.

I would suggest that the *real* solution is to help make the internet a friendlier, more accountable place by looking at techniques for eliminating email fraud such as SPF (http://spf.pobox.com), Microsoft Caller ID (CID), and so on.

I for one have published an SPF record for each of my domains. This means that if a spammer tries to joe-job me, and the site receiving the spam checks SPF, they will get a FAIL and drop the email, saving both me AND the intended recipient from the spam or email virus.

We can improve the internet, or we can grouse about it. I propose we attempt the former.

Thanks for listening to my rant!

--
Jim Ramsay
"Me fail English?  That's unpossible!"

_________________________________________________
tmda-workers mailing list ([EMAIL PROTECTED])
http://tmda.net/lists/listinfo/tmda-workers

Reply via email to