Home > Microsoft Exchange Tips > Exchange Security Tips > Spam and trolling for e-mails
Exchange Tips:
EMAIL THIS
 TIPS & NEWSLETTERS TOPICS 

EXCHANGE SECURITY TIPS

Spam and trolling for e-mails


Barrie Sosinsky
12.02.2002
Rating: --- (out of 5)


Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us   


If your users have used their e-mail address on a publicly available Web site such as eBay recently, you may have noticed that the amount of spam you're getting in to your mail server has dramatically increased. Currently, spam represents between 50% and 65% of the e-mail I receive, and that's not counting things like Tips or e-mail newsletters in the spam category. The explanation for this is pretty simple; the large bulk mailers have figured out how to troll a site for Internet addresses, in the same way that the search engines troll sites for keywords to index. It's simple, just search for <string>@<string> and you've found a valid address to try.

If the spammers want an efficient mailing they purge any address that is returned repeatedly, but most spammers don't do this, because it takes too much time. Since spammers get paid by the number of addresses, there's also no incentive for them to prune their lists. There aren't as many spammers as you might think, but you would be amazed (and saddened) at how much of the Internet's traffic is spam-related.

So there are some important caveats for users that you should tell them about, in an effort to reduce the amount of useless e-mail traffic you're going to get.

First, if users must use an e-mail address in a public Web site, urge them to use a secondary address, or a site specific-address if possible. Doing this will actually give you a very simple filter option based on any traffic to that e-mail address.

You can also invest in spam filters, and there have been a spate of recent reviews on this type of software. Some spam filters are quite good at removing bulk-generated mailing.

There are some other things users can do, because it is almost unavoidable that some of their e-mail addresses will get put on a mailer's list. First and foremost, no user should EVER respond to spam. A response confirms that the e-mail address is an active one, and invites more spam.

If a spammer offers a mechanism for removing recipients from a list, your users should not exercise it for the same reason. And many spammers now are able to disguise the true origin and identity of their mail. In one technique, called "munging," the address gets a special character like an X added, so that the address name@domain.ext would become nameX@domain.ext. The X helps defeat programs that scan for addresses.

Eventually spamming will be illegal or controlled and made more difficult by features in operating systems. But until then, keep in mind these precautions for a safer e-mail experience.


Barrie Sosinsky is president of consulting company Sosinsky and Associates (Medfield MA). He has written extensively on a variety of computer topics. His company specializes in custom software (database and Web related), training and technical documentation.


Rate this Tip
To rate tips, you must be a member of SearchExchange.com.
Register now to start rating these tips. Log in if you are already a member.


Submit a Tip




Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us   


RELATED CONTENT
Exchange Security Tips
Why you should secure Exchange 2007 using administrative policies
Microsoft Exchange Server security dos and don'ts
Create a journal rule in Exchange 2007 to secure journaling mailboxes
How to protect an Exchange journaling mailbox from email spoofing
Lock down Microsoft Outlook 2007 to prevent .PST file access
Using Exchange Server journaling as an email-archiving solution
Use the OWA Admin tool to 'segment' Outlook Web Access 2003 features
Why are .PST files a security threat to Exchange Server mailboxes?
OWA won't load after applying Exchange 2007 SP1 security patch
Minimize remote and mobile Outlook Web Access (OWA) security risks

Antispam Software and Spam Filtering
Microsoft Exchange Server security dos and don'ts
Troubleshooting Microsoft Exchange Server Event ID error 6009
How can I configure Exchange IMF to allow an IP address or DNS?
Tool helps identify inbound Exchange Server email flow issues
Exchange email sent to a domain using SPF authentication is returned
Configure SMTP relay restrictions in Exchange Server 2003 to stop spam
Secure Edge Transport servers using the Security Configuration Wizard
Create a global Safe Senders List in Exchange 2007 to filter spam
Migrating antispam settings from Exchange 2003 to Exchange 2007
The six-layered secret of effective Exchange Server email filtering
Antispam Software and Spam Filtering Research

RELATED GLOSSARY TERMS
Terms from Whatis.com − the technology online dictionary
greylist  (SearchExchange.com)
hash buster  (SearchExchange.com)
image spam  (SearchExchange.com)
KnujOn  (SearchExchange.com)
Sender ID  (SearchExchange.com)
spam confidence level  (SearchExchange.com)
spamblock  (SearchExchange.com)
spim  (SearchExchange.com)
tarpitting  (SearchExchange.com)
teergrube  (SearchExchange.com)

RELATED RESOURCES
2020software.com, trial software downloads for accounting software, ERP software, CRM software and business software systems
Search Bitpipe.com for the latest white papers and business webcasts
Whatis.com, the online computer dictionary

DISCLAIMER: Our Tips Exchange is a forum for you to share technical advice and expertise with your peers and to learn from other enterprise IT professionals. TechTarget provides the infrastructure to facilitate this sharing of information. However, we cannot guarantee the accuracy or validity of the material submitted. You agree that your use of the Ask The Expert services and your reliance on any questions, answers, information or other materials received through this Web site is at your own risk.



Email Server Solutions: Exchange 2007, Exchange 2003, Exchange 2000, SharePoint
HomeNewsTopicsITKnowledge ExchangeTipsAsk the ExpertsMultimediaWhite PapersIT Downloads
About Us  |  Contact Us  |  For Advertisers  |  For Business Partners  |  Site Index  |  RSS
SEARCH 
TechTarget provides enterprise IT professionals with the information they need to perform their jobs - from developing strategy, to making cost-effective IT purchase decisions and managing their organizations' IT projects - with its network of technology-specific Web sites, events and magazines.

TechTarget Corporate Web Site  |  Media Kits  |  Site Map




All Rights Reserved, Copyright 2004 - 2009, TechTarget | Read our Privacy Policy
  TechTarget - The IT Media ROI Experts