ietf-asrg
[Top] [All Lists]

RE: [Asrg] DCC and IP checksums

2003-03-10 08:30:11
Hadmut Danisch wrote:
On Fri, Mar 07, 2003 at 06:54:08PM -0500, David F. Skoll wrote:

I use the following algorithm in CanIt.  It is by no means perfect,
but it's pretty good:

 - Skip a line starting "Dear "

- Do a SHA1 hash on what's left.

This won't work. 

It works for certain classes of spammer. It can be made significantly 
better (eg: stripping HTML tags and comments, stripping 
non-alphanumerics, not only collapsing whitespace, but _removing_ it), 
but it's still trivially bypassable.
<snip>

 I actually wrote a very simple perl script that works perfectly in the way
that you want the chksum to work.
The problem was that it classified every newsletter, breaking news alert,
and weather report as spam.
Duplicity checks don't work because there is too much valid duplicity, not
because it cannot be accomplished technically.

Regards,
Damon 


*****
"The information transmitted is intended only for the person or entity to
which it is addressed and may contain confidential, proprietary, and/or
privileged material.  Any review, retransmission, dissemination or other use
of, or taking of any action in reliance upon, this information by persons or
entities other than the intended recipient is prohibited.  If you received
this in error, please contact the sender and delete the material from all
computers."
_______________________________________________
Asrg mailing list
Asrg(_at_)ietf(_dot_)org
https://www1.ietf.org/mailman/listinfo/asrg