RE: [Asrg] Some data on the validity of MAIL FROM addresses

Vernon Schryver <vjs@calcite.rhyolite.com> Mon, 19 May 2003 20:11 UTC

Received: from www1.ietf.org (ietf.org [132.151.1.19] (may be forged)) by ietf.org (8.9.1a/8.9.1a) with ESMTP id QAA04668 for <asrg-archive@odin.ietf.org>; Mon, 19 May 2003 16:11:27 -0400 (EDT)
Received: (from mailnull@localhost) by www1.ietf.org (8.11.6/8.11.6) id h4JJeYW13823 for asrg-archive@odin.ietf.org; Mon, 19 May 2003 15:40:34 -0400
Received: from ietf.org (odin.ietf.org [132.151.1.176]) by www1.ietf.org (8.11.6/8.11.6) with ESMTP id h4JJeYB13820 for <asrg-web-archive@optimus.ietf.org>; Mon, 19 May 2003 15:40:34 -0400
Received: from www1.ietf.org (ietf.org [132.151.1.19] (may be forged)) by ietf.org (8.9.1a/8.9.1a) with ESMTP id QAA04646; Mon, 19 May 2003 16:10:57 -0400 (EDT)
Received: from www1.ietf.org (localhost.localdomain [127.0.0.1]) by www1.ietf.org (8.11.6/8.11.6) with ESMTP id h4JJZAB12800; Mon, 19 May 2003 15:35:10 -0400
Received: from ietf.org (odin.ietf.org [132.151.1.176]) by www1.ietf.org (8.11.6/8.11.6) with ESMTP id h4JJYkB12760 for <asrg@optimus.ietf.org>; Mon, 19 May 2003 15:34:46 -0400
Received: from ietf-mx (ietf-mx.ietf.org [132.151.6.1]) by ietf.org (8.9.1a/8.9.1a) with ESMTP id QAA04576 for <asrg@ietf.org>; Mon, 19 May 2003 16:05:09 -0400 (EDT)
Received: from ietf-mx ([132.151.6.1]) by ietf-mx with esmtp (Exim 4.12) id 19HquQ-0006DS-00 for asrg@ietf.org; Mon, 19 May 2003 16:06:58 -0400
Received: from calcite.rhyolite.com ([192.188.61.3]) by ietf-mx with esmtp (Exim 4.12) id 19HquK-0006DD-00 for asrg@ietf.org; Mon, 19 May 2003 16:06:52 -0400
Received: (from vjs@localhost) by calcite.rhyolite.com (8.12.9/8.12.9) id h4JK7e6S009794 for asrg@ietf.org env-from <vjs>; Mon, 19 May 2003 14:07:40 -0600 (MDT)
From: Vernon Schryver <vjs@calcite.rhyolite.com>
Message-Id: <200305192007.h4JK7e6S009794@calcite.rhyolite.com>
To: asrg@ietf.org
Subject: RE: [Asrg] Some data on the validity of MAIL FROM addresses
References: <CE541259607DE94CA2A23816FB49F4A301AE24DF@vhqpostal6.verisign.com>
Sender: asrg-admin@ietf.org
Errors-To: asrg-admin@ietf.org
X-BeenThere: asrg@ietf.org
X-Mailman-Version: 2.0.12
Precedence: bulk
List-Unsubscribe: <https://www1.ietf.org/mailman/listinfo/asrg>, <mailto:asrg-request@ietf.org?subject=unsubscribe>
List-Id: Anti-Spam Research Group - IRTF <asrg.ietf.org>
List-Post: <mailto:asrg@ietf.org>
List-Help: <mailto:asrg-request@ietf.org?subject=help>
List-Subscribe: <https://www1.ietf.org/mailman/listinfo/asrg>, <mailto:asrg-request@ietf.org?subject=subscribe>
List-Archive: <https://www1.ietf.org/pipermail/asrg/>
Date: Mon, 19 May 2003 14:07:40 -0600

> From: "Hallam-Baker, Phillip" <pbaker@verisign.com>

> The FROM address is being choosen to maximize the probability
> the email is opened.
>
> People trust what they know. They know AOL, Hotmail, yahoo.
> It would be interesting to see whether the YAH addresses
> decline over the next few months as they step up enforcement
> on the legal front.

Is an address like wndu4mja@yahoo.com better known than an address
like wndu4mja@cnn.com?  Given the flood of spam, are most users more
likely to open mail from wndu4mja@yahoo.com, wndu4mja@cnn.com, or
wndu4mja@obscure.com?  The answers clearly favor spammers using
wndu4mja@cnn.com.  That they could use wndu4mja@cnn.com but don't is
almost certainly not a coincidence.

AOL has a very long history of enforcement on the legal front.  Why
haven't spammers been paying attention?  My answer is that AOL stopped
launching lawyers for a few years or perhaps AOL is again giving away
free, spam-all-you-want-for-40-day drop-boxes because they are no
longer checking credit card numbers.

If the legal front matters to spammers, then the long established laws
against header forgery as well as civil actions such as flowers.com
case should also matter.  Those should cause spammers to look for ways
to legitimately own their sending addresses.  The easiest way to do
that is to use free provider drop-boxes.


Vernon Schryver    vjs@rhyolite.com
_______________________________________________
Asrg mailing list
Asrg@ietf.org
https://www1.ietf.org/mailman/listinfo/asrg