From: "David B Funk" <[EMAIL PROTECTED]>

> On Tue, 14 Dec 2004, jdow wrote:
>
> > Of course, for the spamassassin lists I found something like what I did
> > in procmail is best:
> >
> > ---9<---
> > :0 fw: spamassassin.lock
> > * < 250000
> > * !^List-Id: .*(spamassassin\.apache.\org)
> > | /usr/bin/spamc -t 150
> > ---9<---
> >
> > {^_^}
>
> Ahh, I see.
> OK spammers, to blast Jane with spam just forge a spamassassin.apache.org
> List-Id header in your messages. It'll then waltz right past her filter.
;)
>
> The whole reason for the complexity of whitelist_from_rcvd is the
> work that it does to make it immune to header forgeries.

That changes to another indicator or a set of indicators once the spammers
attempt that "List-Id:" thing. Meantime it is an easy trick.

{^_-}    Joanne


Reply via email to