Explore top 10 tips to secure your open-source projects now. Read More
×Cyber risk is increasing for individuals and organizations, making flexible and robust solutions for identifying spam and malware increasingly critical. Apache SpamAssassin is an anti-spam framework we stand behind and have been using in Guardian Digital EnGarde Cloud Email Security for decades as a component of our email security solution to help detect fraudulent and malicious mail. . The KAM ruleset for SpamAssassin is a set of rules developed by the McGrail Foundation . It has been in active use and development since May 2004 and significantly improves the performance and efficacy of a stock installation of Apache SpamAssassin. The foundation is celebrating the 20th anniversary of the KAM ruleset, underlining its long-standing support of the project. In celebration of this exciting accomplishment, we sat down with Founder and ruleset author Kevin McGrail to discuss the significance of the KAM ruleset, how it has evolved over the past two decades, and future plans for the ruleset. In addition to this exclusive coverage, you’ll learn how using the ruleset can improve the security of your email to protect against known and emerging threats. . The KAM ruleset stands as a crucial framework enhancing email security, addressing the dynamic nature of cyber threats through advanced algorithms and machine learning.. Email Security Solutions, Spam Detection Techniques, Apache SpamAssassin. . Brittany Day
Looks like those anti-phishing filters in your browser are working because attackers are now bypassing them by stuffing HTML files into spam messages so the malicious pages don't get detected: Researchers have detected several cases of phishers passing HTML file attachments off as Bank of America, Lloyds, TSB, and PayPal pages.. And this practice appears to be on the rise, says Satnam Narang, a threat analyst with M86 Security, which has seen an increasing number of these types of phishing messages in its spam traps. "We've seen malicious HTML attachments in spam before that directed to Canadian pharmacies. On more than one occasion, we've seen it with PayPal and Bank of America," Narang says. "But the fact is that these are becoming more common." Unlike spam emails that try to direct users to a phishing site via a URL, this one is able to bypass the browser's anti-phishing filter and blacklist by locally storing the page. "And once the user inputs his information and sends it off to a PHP script on a legitimate website, it gets redirected to the bad guys, and they get the information," he says. "The user is none the wiser because it redirects [him] to actual sites," such as PayPal, for instance. The link for this article located at Dark Reading is no longer available. . Cyber threats are advancing as malicious actors exploit loopholes in email security by employing PDF formats, heightening the danger for individuals.. Phishing Techniques, Email Security, Cyber Threats. . LinuxSecurity.com Team
GFI Software has confirmed the purchase of sometimes controversial spam blocklist provider SORBS for a reported $451,000.. Spam and Open Relay Blocking System (SORBS) has maintained a list of email servers suspected of sending or relaying spam since 2002. Inefficiencies in its spam blocklist database removal procedure, a controversial fines policy and the aggressive blacklisting of shared IP addresses have drawn criticism even from those also looking to clamp down on junk mail on the internet. Citing an impending eviction by its University of Queensland web hosts, Australia-based SORBS publicly contemplated either selling or closing the service back in June. In the event the operation continued running as before until October when it found a white knight in the shape of GFI Security, a US based vendor of web and network security and management tools. The link for this article located at The Register is no longer available. . GFI Software announced the acquisition of the SORBS email blacklist provider, an initiative aimed at rectifying its debated policies.. Email Filtering, Spam Detection, Network Security. . LinuxSecurity.com Team
"Image spam, which at the beginning of the year accounted for nearly 60 per cent of all junk email, has plummeted and now accounts for only about 15 per cent of spam." Will PDF SPAM change the way we need to detect SPAM? Will the Email providers start blocking Emails with PDF's as attachments? One thing to make sure though is to now check that your emails with attached PDF files are received. . Foiled by increasingly accurate corporate spam filters, spammers have dumped pictures for PDFs in their bulk emailings, according to the latest data from security firms. Image spam, which at the beginning of the year accounted for nearly 60 per cent of all junk email, has plummeted and now accounts for only about 15 per cent of spam. The link for this article located at TheRegister is no longer available. . Frustrated by enhanced detection in email security, fraudsters have shifted to utilizing GIFs instead of text in their promotions.. Spam Detection, Email Security, PDF Attachments, Corporate Filters. . Bill Locke
In this article will we first look at some of the existing methods to identify an email as a spam? We look at the pros and cons of the existing methods and what are the current challenges in this domain. This article also needs a special mention to Paul Graham, for his wok in this field and putting up perhaps the most comprehensive tutorials in this domain on his homepage. I am sure that each one of us has faced this problem of spamming. Every morning when I open my inbox I spend most of the time either deleting the junk emails or reporting them as spam. . The link for this article located at Infosec Writers is no longer available. . The link for this article located at Infosec Writers is no longer available. . article, first, existing, methods, identify, email. . LinuxSecurity.com Team
This document is intended to provide a comprehensive introduction to the behavior of email headers. It is primarily intended to help victims of unsolicited email ("email spam") attempting to determine the real source of the (generally forged) email that plagues them; it should also help in attempts to understand any other forged email. It may also be beneficial to readers interested in a general-purpose introduction to mail transfer on the Internet. Although the document intentionally avoids "how-to-forge" discussions, some of the information contained in it might be turned to that purpose by a sufficiently determined mind. The author explicitly does not endorse malicious or deceptive falsification of email, of course, and any use for such purposes of the information contained in this document is contrary to its purpose. . The link for this article located at StopSpam.org is no longer available. . The link for this article located at StopSpam.org is no longer available. . document, intended, provide, comprehensive, introduction, behavior, email, headers. . LinuxSecurity.com Team
Spam email is the plague of the 21st century; SpamBayes is its cure. This client-side application analyzes all incoming email messages and automatically sorts out those that are unwanted. SpamBayes digests the contents of email messages and counts how often certain words -- e.g. Viagra -- occur in spam (bad) or ham (good) messages. Based on these word patterns, it calculates an overall score that rates a message as spam, ham, or unknown. You can manually classify unknown mail as spam or ham and SpamBayes will learn accordingly. . The SpamBayes classification sorts out virtually all spam messages and almost never produces a false positive -- that is, a good message wrongly identified as spam. Only once have I had to fetch an email from the junk mail folder. This happened when a Spanish friend wrote me, presumably because Spanish messages are rare in my inbox. I corrected the wrong classification, and all her subsequent messages were recognized as good. The program improves precision with each manual correction. SpamBayes can be run as an Outlook plugin under Windows or as a POP3 or IMAP proxy under Windows, Linux/Unix, and Mac OS. The link for this article located at Newsforge is no longer available. . The SpamBayes classification sorts out virtually all spam messages and almost never produces a false. email, plague, century, spambayes, client-side, application. . LinuxSecurity.com Team
As spam filters get more advanced, less spam is allowed to enter into user’s inbox so the business model of spammers gets hurt. Instead of thinking that people don’t really like to receive spam and they would prefer less intrusive ways to get publicity, they try to workaround these filters in, sometimes, really clever ways. So, spam filters have to be continually modified and adapted to not fall into these new tricks. . As Bayesian filtering is the most common used technique, this is what spammers try to escape more frequently. We told that Bayesian works by calculating the probability that a word is from spam or from legitimate mail, so what spammers do is modify the messages so they get more probability of being legitimate mail. The link for this article located at Becoming Paranoid is no longer available. . As Bayesian filtering is the most common used technique, this is what spammers try to escape more fr. filters, advanced, allowed, enter, user’s, inbox, business. . LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.