Ethical Hacking

Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package.
Computer Forensics Training at InfoSec Institute

Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors.




Network Security Incidents
[Top] [All Lists]

Re: Massive SPAM Increase {-2.6}

Subject: Re: Massive SPAM Increase {-2.6}
Date: Sun, 8 Oct 2006 22:06:24 -0600
You got joe-jobbed.

http://en.wikipedia.org/wiki/Joe_job

What MTA do you run?

seifried.org Mail looks like this:

Internet
|
Firewall - OpenBSD with spamd (defaults) and very agressive greytrapping.This catches about 90% of my spam (the main idea is to reduce load on spamassassin and make sure I'm talking to a real mail server). For example if you try to email kurs@seifried.org or kuru@seifried.org you get black listed (so often spammers go in alphabetical order hit those before kurt@seifried.org) I also have a script that checks the maillogs for undeliverable addresses and adds those (about 3000 in all added, very few new ones being added now).
|
Incoming MX servers - two servers running Postfix with various anti-spam things enabled.
|
Mail server - Postfix server with spamassassin and some procmail filtering for attachments/etc to my personal accounts. IMAPS server for mail retrieval.


So currently I have two main lines of defense against spam: OpenBSD spamd and spamassassin. I have not yet enabled Bayes filtering, which would provide an additional level of spam filtering (I get 2-3 spams a day to my accounts so it's not enough to bother me enough to setup Bayes filtering).

Vini

-Kurt



------------------------------------------------------------------------------ This List Sponsored by: Black Hat

Attend the Black Hat Briefings & Training USA, July 29-August 3 in Las Vegas. World renowned security experts reveal tomorrow's threats today. Free of vendor pitches, the Briefings are designed to be pragmatic regardless of your security environment. Featuring 36 hands-on training courses and 10 conference tracks, networking opportunities with over 2,500 delegates from 40+ nations.

http://www.blackhat.com
------------------------------------------------------------------------------

<Prev in Thread] Current Thread [Next in Thread>