[Dshield] Extreme increase in spam attempts... any one else seeing similar event?
dotzero at gmail.com
Fri Aug 17 20:57:28 GMT 2007
On 8/17/07, Tony Earnshaw <tonni at hetnet.nl> wrote:
> That sort of thing is very often backscatter from joe jobs, i.e. a bot
> network sending out spam with the smtp 'MAIL FROM:' with one of your
> valid addresses and the receiving MTA bouncing it (as opposed to smtp
> refusing it).
What's interesting to me are the number of MTAs that will still
backscatter on joe jobs even if the abused domain makes a strong
(-all) SPF assertion. I'd argue that this type of backscatter should
be considered spam as well.
More information about the list