![]() |
![]() |
|
Click the comments link on any story to see comments or add your own. Subscribe to this blog |
01 Sep 2010
When a user of a large mail system such as AOL, Yahoo, or Hotmail reports a message as junk or spam, one of the things the system does is to look at the source of the message and see if the source is one that has a feedback loop (FBL) agreement with the mail system. If so, it sends a copy of the message back to the source, so they can take appropriate action, for some version of appropriate. For several years, ARF, Abuse Reporting Format, has been the de-facto standard form that large mail systems use to exchange FBL reports about user mail complaints. Until now, the only documentation for ARF was a draft spec originally written Yakov Shafranovich in 2005, and occasionally updated originally by him and later by other people including myself. Earlier this year, the IETF chartered a working group called MARF which took that draft, brought the references up to date, stripped out a lot of options that seemed useful five years ago but in practice nobody ever used, and this week it was finally published as RFC 5965.posted at: 11:06 :: permanent link to this entry :: 0 comments Trackback link is http://jl.ly/Email/arfstd.trackback 29 Aug 2010
Here's the body of a phish purporting to tell me about a $386 refund from the Canada Revenue Agency. Even disregarding the signature that says Internal Revenue Service, check out that alt text and file name for the image. After the last annual calculations of your fiscal activity we have determined that you are eligible to receive a tax refund of $386.00 Please submit the tax refund request and allow us 6-9 days in order to process it. <br /> <br /> A refund can be delayed for a variety of reasons. For example submitting invalid records or applying after the deadline. <br /> <img height="340" alt="Fake CRA site" src="http://video.itworldcanada.com/ITBUimages/Jan19/fake_cra.jpg" width="450" /><br /> To access the form for your tax refund, please <U><a href="URL of phish site">click here</a></U> <br /> <br /> Regards, <br /> Internal Revenue Service posted at: 18:55 :: permanent link to this entry :: 0 comments Trackback link is http://jl.ly/Email/truespam.trackback 09 Aug 2010
posted at: 23:48 :: permanent link to this entry :: 1 comments Trackback link is http://jl.ly/Email/googvz.trackback 01 Aug 2010
In a recent article, I read about increasingly intrusive tracking of online users, which has lead to a proposal at the FTC FTC Chairman Jon Leibowitz said the system would be similar to the Do-Not-Call registry that enables consumers to shield their phone numbers from telemarketers.Maybe I'm dense, but even if this weren't a fundamentally bad idea for policy reasons, I don't see how it could work. posted at: 19:26 :: permanent link to this entry :: 1 comments Trackback link is http://jl.ly/donottrack.trackback 27 Jul 2010
posted at: 22:58 :: permanent link to this entry :: 0 comments Trackback link is http://jl.ly/Copyright_Law/jailbreak.trackback |
Topics
My other sitesOther blogsWord
to the Wise
Related sitesCoalition Against Unsolicited Commercial E-mail
|
||||||||||||||||||||||||
© 2005-2009 John R. Levine.
CAN SPAM address harvesting notice: the operator of this website will
not give, sell, or otherwise transfer addresses maintained by this
website to any other party for the purposes of initiating, or enabling
others to initiate, electronic mail messages.