Re: Spamming...
The Famous Brett Watson <[email protected]> Fri, 29 Apr 2005 01:07:38 +1000
| Newsgroups | gmane.mail.im2000 |
|---|---|
| Organization | The Association for the Advancement of Alternative Concepts and Epistemological Awareness |
| Message-ID | <[email protected]> |
On Fri, 29 Apr 2005 00:16, Chris Haynes wrote: > SPF also provides you with a more stable 'identity' for use in reputation > systems, black lists, etc. That's where SPF can form part of a > spam-reduction regime. As an anti-forgery technology, SPF has merits. It does not significantly contribute to the possibility of domain-name blacklists, because spammers are under no obligation to use a domain on an on-going basis. It *does* contribute usefully to domain-name *whitelisting*, but there's currently less interest in that process. In my recent experience, spammers are registering domains in bulk and churning through them rapidly. Given the price of a domain name registration, they can afford a fairly high churn rate, so long as their product is profitable. Domains seen in recent spam (my personal corpus): rancejknfl.com bestcds.biz shotdiferencia.com bottleofpleasure.com sanitizethare.com tanachklgmj.com jocosehnajj.com lanfee.info monarchic.net aaruenjhk.com Some of them are still going to the trouble of finding unregistered domain names which look somewhat meaningful. Others have taken to registering "ten plus or minus one random letters dot com". If we magically introduced a perfect anti-forgery mechanism by magic overnight, there still wouldn't be much value in domain name blacklists. Some, but not much.