ietf-asrg
[Top] [All Lists]

Re: [Asrg] DCC and IP checksums

2003-03-08 06:41:22
Hadmut Danisch wrote:
On Fri, Mar 07, 2003 at 06:54:08PM -0500, David F. Skoll wrote:

I use the following algorithm in CanIt.  It is by no means perfect,
but it's pretty good:

 - Skip a line starting "Dear "

- Do a SHA1 hash on what's left.

This won't work.

It works for certain classes of spammer. It can be made significantly better (eg: stripping HTML tags and comments, stripping non-alphanumerics, not only collapsing whitespace, but _removing_ it), but it's still trivially bypassable.

Good for the low rent spammers. Not enough for Ralsky. Not enough for some of the ratware out there.

[ie: there are "pay services" which tune your email to get past SpamAssassin. Not necessarily "bad", unless the intent is to spam as opposed to minimizing the possibility of interference with legit opt-in/confirmed bulk email.]

_______________________________________________
Asrg mailing list
Asrg(_at_)ietf(_dot_)org
https://www1.ietf.org/mailman/listinfo/asrg



<Prev in Thread] Current Thread [Next in Thread>