ietf-asrg
[Top] [All Lists]

Re: [Asrg] Email Postage (was Re: FeedBack loops)

2008-11-17 17:59:05
On Mon, Nov 17, 2008 at 03:57:33PM -0500, Barry Shein wrote:
Ya know, if confirmation from ISPs message queueing systems could just
ripple back to the end-user a message like:


      Message Accepted.

      You have sent 9,731 messages today.

      If that seems wrong your computer may
      be infected, please click here: [HELLLPPP!]

Were this done -- say, with a standard bit of code that could be
attached to sendmail and postfix and exim and the like -- then I
think it's fairly likely that the same attackers who control all
those zombied systems and use them to send spam might take the time
to craft the code to throw those messages away.  Or perhaps to divert
them to their own C&C networks in order to help them keep better
track of how their spam-sending nodes are doing.

A zombied system is enemy territory: nothing it does can be trusted,
nor can it be trusted to do anything it's told to do.

---Rsk

_______________________________________________
Asrg mailing list
Asrg(_at_)irtf(_dot_)org
https://www.irtf.org/mailman/listinfo/asrg