Re: [Asrg] 0.General - News Article - NYT Reports Porn Spam Hijacking Network

Yakov Shafranovich <research@solidmatrix.com> Wed, 16 July 2003 01:39 UTC

Received: from optimus.ietf.org (ietf.org [132.151.1.19] (may be forged)) by ietf.org (8.9.1a/8.9.1a) with ESMTP id VAA13464 for <asrg-archive@odin.ietf.org>; Tue, 15 Jul 2003 21:39:45 -0400 (EDT)
Received: from localhost.localdomain ([127.0.0.1] helo=www1.ietf.org) by optimus.ietf.org with esmtp (Exim 4.20) id 19cbGK-0006Ok-0C for asrg-archive@odin.ietf.org; Tue, 15 Jul 2003 21:39:20 -0400
Received: (from exim@localhost) by www1.ietf.org (8.12.8/8.12.8/Submit) id h6G1dJCs024583 for asrg-archive@odin.ietf.org; Tue, 15 Jul 2003 21:39:19 -0400
Received: from odin.ietf.org ([132.151.1.176] helo=ietf.org) by optimus.ietf.org with esmtp (Exim 4.20) id 19cbGJ-0006OO-ST for asrg-web-archive@optimus.ietf.org; Tue, 15 Jul 2003 21:39:19 -0400
Received: from ietf-mx (ietf-mx.ietf.org [132.151.6.1]) by ietf.org (8.9.1a/8.9.1a) with ESMTP id VAA13452; Tue, 15 Jul 2003 21:39:14 -0400 (EDT)
Received: from ietf-mx ([132.151.6.1]) by ietf-mx with esmtp (Exim 4.12) id 19cbGG-0000EH-00; Tue, 15 Jul 2003 21:39:16 -0400
Received: from ietf.org ([132.151.1.19] helo=optimus.ietf.org) by ietf-mx with esmtp (Exim 4.12) id 19cbGB-0000E5-00; Tue, 15 Jul 2003 21:39:11 -0400
Received: from localhost.localdomain ([127.0.0.1] helo=www1.ietf.org) by optimus.ietf.org with esmtp (Exim 4.20) id 19cbF3-000652-Pu; Tue, 15 Jul 2003 21:38:01 -0400
Received: from odin.ietf.org ([132.151.1.176] helo=ietf.org) by optimus.ietf.org with esmtp (Exim 4.20) id 19cbER-0005xN-AO for asrg@optimus.ietf.org; Tue, 15 Jul 2003 21:37:23 -0400
Received: from ietf-mx (ietf-mx.ietf.org [132.151.6.1]) by ietf.org (8.9.1a/8.9.1a) with ESMTP id VAA13413 for <asrg@ietf.org>; Tue, 15 Jul 2003 21:37:18 -0400 (EDT)
Received: from ietf-mx ([132.151.6.1]) by ietf-mx with esmtp (Exim 4.12) id 19cbEO-0000DQ-00 for asrg@ietf.org; Tue, 15 Jul 2003 21:37:20 -0400
Received: from 000-232-844.area5.spcsdns.net ([68.27.148.181] helo=68.27.148.181) by ietf-mx with esmtp (Exim 4.12) id 19cbEB-0000DE-00 for asrg@ietf.org; Tue, 15 Jul 2003 21:37:08 -0400
Message-Id: <5.2.0.9.2.20030715213614.00bd0f00@solidmatrix.com>
X-Sender: research@solidmatrix.com
X-Mailer: QUALCOMM Windows Eudora Version 5.2.0.9
To: mathew <meta@pobox.com>, asrg@ietf.org
From: Yakov Shafranovich <research@solidmatrix.com>
Subject: Re: [Asrg] 0.General - News Article - NYT Reports Porn Spam Hijacking Network
Mime-Version: 1.0
Content-Type: text/plain; charset="us-ascii"; format="flowed"
X-MimeHeaders-Plugin-Info: v2.03.00
Sender: asrg-admin@ietf.org
Errors-To: asrg-admin@ietf.org
X-BeenThere: asrg@ietf.org
X-Mailman-Version: 2.0.12
Precedence: bulk
List-Unsubscribe: <https://www1.ietf.org/mailman/listinfo/asrg>, <mailto:asrg-request@ietf.org?subject=unsubscribe>
List-Id: Anti-Spam Research Group - IRTF <asrg.ietf.org>
List-Post: <mailto:asrg@ietf.org>
List-Help: <mailto:asrg-request@ietf.org?subject=help>
List-Subscribe: <https://www1.ietf.org/mailman/listinfo/asrg>, <mailto:asrg-request@ietf.org?subject=subscribe>
List-Archive: <https://www1.ietf.org/pipermail/asrg/>
Date: Tue, 15 Jul 2003 21:36:15 -0400

At 06:07 PM 7/15/2003 -0400, mathew wrote:

>On Tuesday, July 15, 2003, at 08:47 AM, Alan DeKok wrote:
>>mathew <meta@pobox.com> wrote:
>....
>>   Spam filtering on outbound messages is perfectly permissible in many
>>cases, and legally required in many.  Do you really think that it's
>>legally acceptable for businesses to allow their employees to send
>>(whatever illegal content) to each other, or to people outside of the
>>company?
>
>So you're proposing that ISPs be required to run something like 
>SpamAssassin on all *outgoing* e-mail, and bounce e-mail back at the user 
>if it looks like spam?
>
>I see a problem with that--will users accept it, or will they take their 
>money elsewhere? I know that when *I* send an e-mail, I expect it to be 
>sent--if my ISP bounces it back because they don't like the content, it's 
>time for me to find another ISP.

Sometime back Mike Rubel proposed implementing a rate limit on outgoing 
messages (see 
http://www1.ietf.org/mail-archive/working-groups/asrg/current/msg04616.html). 
If too many messages are sent within a set amount of time, they are held in 
queue and a message is sent to the ISP subscriber warning him about a 
possible infection. Same can apply to too many outgoing spam messages (see 
http://www1.ietf.org/mail-archive/working-groups/asrg/current/msg04629.html). 
A sample warning would be as follows:


------------------------------------------------------------------------
     Dear customer,

     We apologize for this intrusion.

     Our systems indicate that your computer attempted to send a large
     number of emails over the last ten minutes.  Because unusually
     large volumes of outbound email sometimes indicate the presence of
     a computer virus, we wanted to check with you before proceeding.
     These and further emails will be placed in a temporary
     quarantine while we await your instructions.  We respect your
     privacy, and will not read or otherwise disclose the messages
     without your permission.

     Please call (800) 123-4567 at your earliest convenience so that
     we may process your request without further delay.  We appreciate
     your business and look forward to serving you again in the future.

                        --Your friendly email service providers
     To change your notification settings, please go to:
     https://www.exampleisp.com/my_account_settings/web_form.php
------------------------------------------------------------------------  


_______________________________________________
Asrg mailing list
Asrg@ietf.org
https://www1.ietf.org/mailman/listinfo/asrg