Security Software Zone Security Software Zone
Home Contact Us
Search in
Forum SecurityToolbox Submit Software
Security Software Zone Login
Security Software Categories
News - Articles - Reviews
Free Newsletter
Join our mailing list and receive
security software news and
advice from our experts.
Submit
  Security Software Zone » Software Reviews » Spam Blocker » How to stop spammers from fooling whitelists

How to stop spammers from fooling whitelists

Category: Spam Blocker
Published: 11/20/2006, 17:58  
Editor: Security Software Zone
 
Print article
Send to a friend
Search in reviews

Effectively stopping spam over the long-term requires much more than blocking individual IP addresses and creating rules based on keywords that spammers typically use. The increasing sophistication of spam tools coupled with the increasing number of spammers has created a big evolution in the variety and volume of spam. The old ways of blocking the bad guys just don’t work anymore like they used to.

Examining spam and spam-blocking technology can illuminate how this evolution is taking place and what can be done to combat spam and reclaim e-mail as the efficient, effective communication tool it was intended to be.

One method used to combat spam is whitelisting. Whitelists are databases of trusted email sources. The list may contain specific email addresses, IP addresses or trusted domains. Emails received from a whitelisted source are allowed to pass through the system to the user’s email box. The list is built when users and email administrators manually add trusted sources to the whitelist. Once built, the catch-rate for spam can be close to 100%, however, whitelists produce an inordinate number of false positives.

It is virtually impossible to produce an exhaustive list of all possible legitimate email senders because legitimate email can come from any number of sources. To get around this, some organizations have instituted a challenge-response methodology. When an unknown sender sends an email to a user’s account, the system automatically sends a challenge back to the sender. Some challenge-response systems require the sender to read and decipher an image containing letters and numbers. The image is designed to be unreadable by a machine, but easily recognizable by a human. Spammers would not spend the time required to go through a large number of challenge-response emails, so they drop the address and move on to those users who don’t use such a system.

Whitelists are only partially successful and impractical for many users. For example, there can be problems when users register for online newsletters, order products online or register for online services. If the user doesn't remember to add the new email source to their whitelist, or if the domain or IP address is entered incorrectly, the communication will fail. Additionally, whitelists impose barriers to legitimate email communication and are seen by some as just plain rude.

Whitelists are not widely used by email users and administrators as a primary tool to fight spam because of the high number of false positives, and the difficulties in creating a good list of email sources. Because whitelists are not widely used, spammers typically do not develop countermeasures. As with other spam fighting techniques, whitelists are most effective when used in conjunction with other anti-spam tools.

The solution can be the sone described bellow.

When used individually, each anti-spam technique has been systematically overcome by spammers. Great plans to rid the world of spam (such as charging a penny for each e-mail received or forcing servers to solve mathematical problems before delivering e-mail) give few results. These schemes are not realistic and would require a large percentage of the population to adopt the same anti-spam method in order to be effective.

Bookmark to:
Add 'How to stop spammers from fooling whitelists' to Del.icio.us Add 'How to stop spammers from fooling whitelists' to digg Add 'How to stop spammers from fooling whitelists' to FURL Add 'How to stop spammers from fooling whitelists' to reddit Add 'How to stop spammers from fooling whitelists' to Technorati Add 'How to stop spammers from fooling whitelists' to Yahoo My Web Add 'How to stop spammers from fooling whitelists' to Stumble Upon Add 'How to stop spammers from fooling whitelists' to Google Bookmarks Add 'How to stop spammers from fooling whitelists' to RawSugar Add 'How to stop spammers from fooling whitelists' to Squidoo Add 'How to stop spammers from fooling whitelists' to Spurl Add 'How to stop spammers from fooling whitelists' to Netvouz Add 'How to stop spammers from fooling whitelists' to Rojo Add 'How to stop spammers from fooling whitelists' to Bloglines Add 'How to stop spammers from fooling whitelists' to Tailrank
Add comment
Security Software Zone is not responsible for the content of these User comments. The views and opinions expressed are those of the individual poster and not the Security Software Zone.
User comments (0):

There is no comment for this review.

 
Reviews related to How to stop spammers from fooling whitelists
 

The A-List launched by Message Level
 ISPs can block fraudulent email with Free service which contains database of senders.
Read More >
02/20/2008, 13:11
 

Virtual E-mail Security Appliance Designed to Enable Organizations of all Sizes to Block the Full Realm of Malicious Code
 The solution is based on the existing Proventia(R) Network Mail Security System from its Internet Security Systems (ISS) division.
Read More >
08/03/2007, 07:42
 

Learn How To Treat Spam
 The first step in your antispam campaign may well be to understand spam and how it works.
Read More >
01/04/2007, 09:56
 

Free Web-based Emailgram Service - Transmit Only Plain Text Email Messages by Web Without Attachments
 Emailgram is a product that transmits 'Only plain text' email messages by web without attachments, images and HTML formats in order to protect a user's PC from viruses and spam.
Read More >
05/30/2007, 15:54
 

SPAMfighter Wins First Prize For The Most Successful Danish Firm in International Online Business
 SPAMfighter was awarded the prize because of the ability to penetrate the online market and establish SPAMfighter internationally.
Read More >
04/12/2007, 23:51

Sponsored