Metrics and SPAM

    Date14 Dec 2009
    Posted ByAlex
    Like all good security people I regularly look at different metrics to see what is going on in the environment. Usually this is a bit of a ho hum task, but every now and then you do come across something interesting. I find it helps to graphically represent the information as abnormalities often jump out at you which otherwise might not be as obvious. Take the graph on the left. This represents the SPAM traffic received in a month. August and September are fairly steady a noticeable drop in October in email received and then, Whoa! What is going on in November? Email messages received increased by more than 100% and the yellow line shows that the majority is SPAM. It is not exactly parallel to the received line so either normal mail increased as well or more SPAM was missed by the tool used to block SPAM. Both are worth investigating further.

    Metrics, especially visualised metrics, can be very effective in identifying whether you need to jump and fix something or whether it is business as usual.

    LinuxSecurity Poll

    What is your favorite feature?

    No answer selected. Please try again.
    Please select either existing option or enter your own, however not both.
    Please select minimum 0 answer(s) and maximum 3 answer(s).
    [{"id":"65","title":"Feature articles","votes":"0","type":"x","order":"1","pct":0,"resources":[]},{"id":"66","title":"News","votes":"1","type":"x","order":"2","pct":33.33,"resources":[]},{"id":"67","title":"HOWTOs","votes":"2","type":"x","order":"3","pct":66.67,"resources":[]}]["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"]["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"]350


    We use cookies to provide and improve our services. By using our site, you consent to our Cookie Policy.