Sign In
Terry Zink's Cyber Security Blog
Discussing Internet security in (mostly) plain English
Translate This Page
Translate this page
Powered by
Microsoft® Translator
Common Tasks
Blog Home
Email Blog Author
About
OK
RSS for comments
RSS for posts
Atom
Search
Advanced search options...
Search In:
Everything
Blogs
Forums
People
Groups
Places
Pages
Date range:
All Time
Last Year
Last 6 Months
Last 3 Months
Last Month
Last Week
Last Two Days
Tags
Authentication
Backscatter
Botnets
Economics
Education
Entertainment
Facebook
Foreign language
Hacking
Legal
Malware
Miscellaneous
Net Neutrality
Outbound
Pages
Privacy
Reputation
Security
Social Networking
Spam
Stories
Monthly Archives
Archives
February 2012
(7)
January 2012
(21)
December 2011
(6)
November 2011
(12)
October 2011
(13)
September 2011
(12)
August 2011
(15)
July 2011
(14)
June 2011
(11)
May 2011
(11)
April 2011
(11)
March 2011
(11)
February 2011
(9)
January 2011
(1)
December 2010
(19)
November 2010
(16)
October 2010
(18)
September 2010
(16)
August 2010
(16)
July 2010
(16)
June 2010
(16)
May 2010
(16)
April 2010
(21)
March 2010
(25)
February 2010
(17)
January 2010
(13)
December 2009
(13)
November 2009
(17)
October 2009
(18)
September 2009
(13)
August 2009
(12)
July 2009
(15)
June 2009
(12)
May 2009
(13)
April 2009
(10)
March 2009
(9)
February 2009
(9)
January 2009
(16)
December 2008
(15)
November 2008
(16)
October 2008
(13)
September 2008
(19)
August 2008
(16)
July 2008
(16)
June 2008
(15)
May 2008
(14)
April 2008
(15)
March 2008
(17)
February 2008
(15)
January 2008
(14)
December 2007
(16)
November 2007
(12)
October 2007
(16)
September 2007
(16)
August 2007
(8)
July 2007
(15)
June 2007
(16)
May 2007
(15)
April 2007
(11)
March 2007
(10)
February 2007
(9)
January 2007
(20)
December 2006
(14)
November 2006
(8)
October 2006
(14)
September 2006
(13)
August 2006
(22)
July 2006
(12)
June, 2007
MSDN Blogs
>
Terry Zink's Cyber Security Blog
>
June, 2007
Subscribe via RSS
Sort by:
Most Recent
|
Most Views
|
Most Comments
Excerpt View
|
Full Post View
Terry Zink's Cyber Security Blog
Update on spam levels
Posted
over 5 years ago
by
tzink
0
Comments
My original plan when doing the series on sender authentication (which is not yet finished) was to write a series of uninterrupted posts. I didn't want to break my mometum by diverting to another topic. However, as serendipity would have it, the start...
Terry Zink's Cyber Security Blog
Sender authentication part 7: Shortcomings of SPF
Posted
over 5 years ago
by
tzink
6
Comments
SPF is a method of authenticating the envelope sender's domain with the IP that transmitted the message to the receiving mail server. It is quite useful for preventing spoofing but it has its shortcomings: 1. SPF adoption has been slow. As I alluded...
Terry Zink's Cyber Security Blog
Sender authentication part 6: The basics of SPF
Posted
over 5 years ago
by
tzink
4
Comments
In our previous posts on sender authentication, we were introduced to the concepts of SMTP, internet headers and how spammers will try to spoof headers. One of the weaknesses of SMTP is that the sender can assign any email address as the Envelope sender...
Terry Zink's Cyber Security Blog
Sender authentication part 5: More on received headers
Posted
over 5 years ago
by
tzink
1
Comments
We saw in part 2 of this series that when a receiving email server gets the message, it inserts a Received: header into the mail headers of the message. Let's go back to our previous example and see what happens if the message is routed through a couple...
Terry Zink's Cyber Security Blog
Sender authentication Part 4: Forward Confirmed Reverse DNS
Posted
over 5 years ago
by
tzink
4
Comments
Now that we have seen how email headers are inserted by the receiving machine upon receipt of an email, we need to go into a little bit on how mail servers convert IP addresses to host names and vice versa. DNS stands for Domain Name System. It converts...
Terry Zink's Cyber Security Blog
Sender authentication part 3: Checking the received headers
Posted
over 5 years ago
by
tzink
2
Comments
In my previous post on the basics of email headers, we saw the basic headers that are inserted by receiving mail agent. In this post, we are going to look at some of the techniques that spammers use to hide themselves. Recall a received header; it's an...
Terry Zink's Cyber Security Blog
Sender authentication part 2: Reading email headers
Posted
over 5 years ago
by
tzink
11
Comments
As we saw in our previous post, 5 basic commands are needed for SMTP. When the receiving mail transfer agent (MTA) receives the message, it inserts additional headers which allow us to trace the message to its source. In the example from the previous...
Terry Zink's Cyber Security Blog
Sender Authentication part 1: The basics of sending email
Posted
over 5 years ago
by
tzink
6
Comments
This is my first post in my series on email authentication. In order to understand how to authenticate the sender of an email, we need to understand how email works. I remember back in my 4th year of university when we learned how to send "fake" email...
Terry Zink's Cyber Security Blog
Sender Authentication
Posted
over 5 years ago
by
tzink
2
Comments
In my next few posts, I plan to write a series on Sender Authentication, specifically on SPF and a little bit on SenderID and possibly even DomainKeys. To my more technically oriented readers, I apologize if this is familiar territory for you as I...
Terry Zink's Cyber Security Blog
Save the inbox, save the world
Posted
over 5 years ago
by
tzink
6
Comments
One of the differences that webmail services like Hotmail has is the ability that it does not deliver mail to the end-client, users have to login to their accounts and view their mail on the web (unless, of course, they POP their mail). Exchange Hosted...
Terry Zink's Cyber Security Blog
SPAM vs spam
Posted
over 5 years ago
by
tzink
5
Comments
I notice quite often that when people refer to spam (either inside our company or on the outside), they often say "SPAM." This has often confused me because as far as I know, SPAM is not an acronym and doesn't stand for anything, it's only slang for Unsolicited...
Terry Zink's Cyber Security Blog
Not one of my better moments
Posted
over 5 years ago
by
tzink
4
Comments
Today was not a great day. A little humbling, if you will. I was asked to participate in a conference call with a customer who was checking out our services because I knew our technology better than the account representative for this customer. Fair...
Terry Zink's Cyber Security Blog
A quick introduction to Web 2.0
Posted
over 5 years ago
by
tzink
2
Comments
This post isn't all that spam-related, but I think it's an important topic because it represents a fundamental trend. I've always said (well, I say it sometimes), that if I wasn't involved in the anti-spam industry, other than the stock trading arena...
Terry Zink's Cyber Security Blog
Good news for a change - even my mother gets it
Posted
over 5 years ago
by
tzink
0
Comments
I'm quite proud of my mother. Yesterday, she was listening to somebody on the radio talk about spyware and how you should never click on popup advertisements. My mom agreed with the host and explained to me that clicking on such links represents a major...
Terry Zink's Cyber Security Blog
June 1, 2007 - Spam breaks to the upside
Posted
over 5 years ago
by
tzink
1
Comments
It's been a long time since we had a really good spam attack but finally we are seeing a good-old fashioned spam outbreak. Ed Falk writes that a new breed of spam bots are relaying mail through ISPs. If so, they're doing an exceptionally good job....
Terry Zink's Cyber Security Blog
How Hotmail fights spam
Posted
over 5 years ago
by
tzink
0
Comments
In case anyone is curious how Hotmail goes about fighting spam, there is a description of it here . I am not involved in Hotmail's spam fighting but I know many of the guys who work on it. We use some of the same technology in our own filters, including...
Page 1 of 1 (16 items)