A Rumplestiltskin attack "is an e-mail address harvesting attack in which a machine attempts to send e-mail messages to randomly guessed addresses at a domain. It might try common first names -- for example, "john@domain.com", "joe@domain.com," and "mike@domain.com" -- and then proceed to common last names and combinations of names and initials...
"If mail for a guessed address is accepted, the "zombie" machine records the address
and sends it back to its "master" -- a controlling machine which adds it to a
database of addresses which will become targest for spam...
"On our servers, these attacks and other traffic from spammers are now consuming
approximately ten times more resources than all of our legitimate mail combined." I got a bounce from rr.com this morning in which email purportedly from me had bounced from several hundred such email addresses... there has to be a way to fix email... from Brett Glass, in a post to Dave Farber's IP list...
Comments
2:56:30 PM
|
|