Date : Sun, 25 Oct 2015 15:56:56 +0000
From : beeb@... (Dr. David Alan Gilbert)
Subject: new message
* Chris Osborn (fozztexx@...) wrote:
>
> On Oct 25, 2015,@8:38 AM, Peter Coghlan <bbcmicro@...>
wrote:
>
> > I don't think this is a case of people subscribing to the list to send spams.
> >
> > It appears to me the spams are resulting from one or more real list members
> > machines getting compromised and being used by the malware to send out spams
> > and/or having email addresses lifted from them which are then passed on to
> > other spamming zombie machines.
> >
> > Unfortunately, the mailing list does not seem to have any protection against
> > this.
>
> I don???t think it???s people subscribing to the list to send spam either.
It looks more to me like the list is happily accepting messages from non-subscribers
and forwarding them on. Even if actual subscribers were sending the messages
to the list, they are all using the same From: address and if the list was
filtering out non-subscribers then it would be easy enough to block it by
removing the kate spam address that somehow got itself onto the list.
>
> Going back through today???s deluge of spams, they are all coming from
the same IP stream.trouts.org ([87.117.200.61]), so it isn???t different
subscribers that are sending them, it???s all coming from a single source.
>
> This isn???t the first time this list has been bombarded by this ???Fw:
new message??? spam, it???s been happening for a couple of weeks now, and
from different email addresses.
Yeh, agreed ; and I'm getting it to other addresses, not just this
list. I suspect that stream.trouts.org is allowing forwarding.
Dave
>
> --
> Follow me on twitter: @FozzTexx
> Check out my blog: http://insentricity.com
>
>
> _______________________________________________
> bbc-micro mailing list
> bbc-micro@...
> http://lists.cloud9.co.uk/mailman/listinfo/bbc-micro
--
-----Open up your eyes, open up your mind, open up your code -------
/ Dr. David Alan Gilbert | Running GNU/Linux | Happy \
\ gro.gilbert @ treblig.org | | In Hex /
\ _________________________|_____ http://www.treblig.org |_______/