Sign In
Terry Zink's Cyber Security Blog
Discussing Internet security in (mostly) plain English
Translate This Page
Translate this page
Powered by
Microsoft® Translator
Common Tasks
Blog Home
Email Blog Author
About
OK
RSS for comments
RSS for posts
Atom
Search
Advanced search options...
Search In:
Everything
Blogs
Forums
People
Groups
Places
Pages
Date range:
All Time
Last Year
Last 6 Months
Last 3 Months
Last Month
Last Week
Last Two Days
Tags
Authentication
Backscatter
Botnets
Economics
Education
Entertainment
Facebook
Foreign language
Hacking
Legal
Malware
Miscellaneous
Net Neutrality
Outbound
Pages
Privacy
Reputation
Security
Social Networking
Spam
Stories
Monthly Archives
Archives
February 2012
(7)
January 2012
(21)
December 2011
(6)
November 2011
(12)
October 2011
(13)
September 2011
(12)
August 2011
(15)
July 2011
(14)
June 2011
(11)
May 2011
(11)
April 2011
(11)
March 2011
(11)
February 2011
(9)
January 2011
(1)
December 2010
(19)
November 2010
(16)
October 2010
(18)
September 2010
(16)
August 2010
(16)
July 2010
(16)
June 2010
(16)
May 2010
(16)
April 2010
(21)
March 2010
(25)
February 2010
(17)
January 2010
(13)
December 2009
(13)
November 2009
(17)
October 2009
(18)
September 2009
(13)
August 2009
(12)
July 2009
(15)
June 2009
(12)
May 2009
(13)
April 2009
(10)
March 2009
(9)
February 2009
(9)
January 2009
(16)
December 2008
(15)
November 2008
(16)
October 2008
(13)
September 2008
(19)
August 2008
(16)
July 2008
(16)
June 2008
(15)
May 2008
(14)
April 2008
(15)
March 2008
(17)
February 2008
(15)
January 2008
(14)
December 2007
(16)
November 2007
(12)
October 2007
(16)
September 2007
(16)
August 2007
(8)
July 2007
(15)
June 2007
(16)
May 2007
(15)
April 2007
(11)
March 2007
(10)
February 2007
(9)
January 2007
(20)
December 2006
(14)
November 2006
(8)
October 2006
(14)
September 2006
(13)
August 2006
(22)
July 2006
(12)
September, 2007
MSDN Blogs
>
Terry Zink's Cyber Security Blog
>
September, 2007
Subscribe via RSS
Sort by:
Most Recent
|
Most Views
|
Most Comments
Excerpt View
|
Full Post View
Terry Zink's Cyber Security Blog
When 99% isn't good enough
Posted
over 5 years ago
by
tzink
9
Comments
The other day, I was taking a look at some of our traffic statistics. One of the challenges that I have is determining what our catch rate is. We know how much traffic we see (more or less), we know how much we catch with blocklists and we...
Terry Zink's Cyber Security Blog
Sender authentication part 30: The canonicalization process
Posted
over 5 years ago
by
tzink
3
Comments
Canonicalization is the process of preparing a message for signing. This process is necessary because of the way email is handled in transit by various mail servers. For example, some mail relayers handle white space and line wraps just fine, others do...
Terry Zink's Cyber Security Blog
Sender authentication part 29: Some DomainKeys examples
Posted
over 5 years ago
by
tzink
5
Comments
Let's plow through a few real life examples. Here's an actual DomainKey Signature: Example 1 DomainKey-Signature: a=rsa-sha1; q=dns; c=nofws; s=s1024; d=yahoo.com.au; h=Message-ID:X-YMail-OSG:Received:X-Mailer:Date:From:Subject:To:MIME-Version...
Terry Zink's Cyber Security Blog
Sender authentication part 28: DomainKey headers in the message
Posted
over 5 years ago
by
tzink
0
Comments
This post will again be a paraphrase of that which is found in RFC 4870 . Now that we have seen how public keys are stored in DNS, we will next look at how a signing server generates the message signature. The signature of the email is stored in the ...
Terry Zink's Cyber Security Blog
Sender authentication part 27: Public key notation in DNS
Posted
over 5 years ago
by
tzink
1
Comments
Now that we have an overview of how DomainKeys works, we're going to look at how a service using DomainKeys generates a DomainKeys signature. When a receiving email server gets the message and sees that there is a DomainKeys header, it has to retrieve...
Terry Zink's Cyber Security Blog
Even spammers take vacations
Posted
over 5 years ago
by
tzink
1
Comments
There's an old saying that goes "Crime doesn't take a vacation." Whenever I say that in my head, it's always in Chief Wiggum's voice for some reason. However, Wiggum was wrong, crime does take a vacation. Over the week including...
Terry Zink's Cyber Security Blog
Sender authentication part 26: DomainKeys in a nutshell
Posted
over 5 years ago
by
tzink
1
Comments
Now that we understand how digital signatures work, let's take a look at DomainKeys. Like SPF and SenderID, DomainKeys is a mechanism of sender authentication. DomainKeys uses public key encryption to authenticate messages. It works in the following way...
Terry Zink's Cyber Security Blog
Facebook spamming me with annoying ads
Posted
over 5 years ago
by
tzink
0
Comments
Has anyone noticed those annoying ads on Facebook? It's in my News Feed, I have a couple of notices from my friends and then an ad to join an Awesome Club and suit up! I don't mind having ads at the top of the screen, but come on Facebook, leave them...
Terry Zink's Cyber Security Blog
Some stats on SPF, DomainKeys and DKIM
Posted
over 5 years ago
by
tzink
0
Comments
I'm taking a quick timeout from my series on explaining Sender Authentication to post some quick stats on authentication. I took an 8-hour snapshot of our logs to collect some statistics. I started tracking how often senders use SPF, DomainKeys and DKIM...
Terry Zink's Cyber Security Blog
Found some spammers today with SPF records set up
Posted
over 5 years ago
by
tzink
4
Comments
I came across some spam in my inbox today. This company was pushing pump-and-dump stock spam for a medical company. I saw that the company passed an SPF check. That's odd, I thought. A spammer passing an SPF check? So, I decided to check out the SPF records...
Terry Zink's Cyber Security Blog
Sender authentication part 25: Digital signatures
Posted
over 5 years ago
by
tzink
0
Comments
We've seen encryption, secret key encryption and public key encryption. Public key encryption allows a sender to encrypt the contents of the message and have only the intended recipient read it. They do this by encrypting with the public key and decrypting...
Terry Zink's Cyber Security Blog
Sender authentication part 24: Public key encryption
Posted
over 5 years ago
by
tzink
1
Comments
The basic idea behind secret key encryption is the following: You don't have to keep the algorithm a secret. You do need to keep the key a secret. To increase the security of the contents, you lengthen the size of the key. This is all well and good, except...
Terry Zink's Cyber Security Blog
Sender authentication part 23: Secret key encryption and one-way functions
Posted
over 5 years ago
by
tzink
2
Comments
We saw in my previous post that substitution ciphers are a method of encoding a message such that its contents are unintelligible (much like the ramblings of many of the presidential candidates), and they are fairly easy to break with computers that can...
Terry Zink's Cyber Security Blog
Sender authentication part 22: Introduction to encryption
Posted
over 5 years ago
by
tzink
3
Comments
It's been a long time since I took the unit on encryption in my 4th year Telecommunications class in university, but I did quite well in it (I believe I got 5/5 on the assignment). For you see, the concept of encryption is relevant to our next section...
Terry Zink's Cyber Security Blog
In transit
Posted
over 5 years ago
by
tzink
0
Comments
My posting has been on-again, off-again lately because I am in the process of moving from Canada down to Seattle. I hope to begin more regular posting (once every two days or so) shortly.
Terry Zink's Cyber Security Blog
New spamming tactic?
Posted
over 5 years ago
by
tzink
10
Comments
Over the past couple of days, we've seen either the beginning of a new botnet tactic, or we changed something on our networks that is causing network problems. The shift in tactics is the amount of time that a bot will connect to our service, we issue...
Page 1 of 1 (16 items)