Michael Green's 'How To' Forum

 

 

[ View Thread ] [ ] [ Return to Index ] [ Read Prev Msg ] [ Read Next Msg ]

How To Forum

Re: Has your email address ever been hijacked .. ??

Posted By: Bill Hely
Date: Saturday, 30 October 2004, at 1:41 a.m.

In Response To: Has your email address ever been hijacked .. ?? (Paul White)

eMail address hijacking is very, very common. The commonest scenario is that a pro spammer sends his junk to addresses on his list, and he ALSO spoofs the "Reply To" address with another address from his list.

Unrecognized "Failure" notices like that reported by Robert are very probably an example of this. But there are many other, and much more sophisticated, techniques in everyday use.

To get anywhere at all with fighting this type of identity theft you have to know quite a few things, like how to view message headers, how to interpret what is in the header, how to tell the spoofed lines from the real ones, how to determine who to send an abuse report to, how to present an abuse report in a format that is of use to the ISP you are reporting to, and so on. There is an automated way to determine who to send an abuse report to, but that alone won't get you anywhere unless you can present the ISP with useful information.

One of the most important entries in a header is the "Received: from" lines, but even they can be, and very often are, spoofed up to a certain point. If you charge in accusing someone identified from a "Received: from" line you may well be abusing some other innocent party.

Handling address hijacking is inextricably tied in with spam handling in general. Nothing causes more public wailing and gnashing of teeth than does the topic of spam, yet is is *unbelievably easy* to manage spam in a manner that requires an investment of no more than a couple of minutes per day. Practically ZERO false positives, and no "white lists" either, Sam - which are a COMPLETE waste of time and effort and highly inaccurate. If you start the "diligent work of making a list of all the people I expect to receive email from", you will have created a job for yourself for life AND you may very well miss a lot of important mail as well.

Websites like DNSSTUFF.COM can be very useful, but if you are looking up the wrong info there is very good chance that all you will achieve is to make an enemy of another innocent bystander.

To Paul, who asked "What would you do ..." I'd say that you have done the right thing so far. If indeed this was a case of "accidental" identity theft (which I'm struggling with) you did the right thing in making contact in a civil manner. However, that done, if it continues then you have no option but to treat her as an aggressor. Back full circle to Abuse Reports, etc.

In case you missed it folks I wrote a whole big book about these and many other security-related issues that confront people just like you every day. What's your time worth? If I saved you even one hour per month and charged you a one-time fee of $49 for the knowledge, I figure you would have to be at least a Thousand Dollars per annum better off! More likely I'll save you an hour a week - or more.

OK, this is an unashamed PLUG --- but in forums like this I do give specific answers where I can. However I can't condense several long and detailed chapters to a single message. Do yourselves a favor and start taking positive action instead of waiting to be hit with one puzzle or inconvenience after another. If you think I'm blowing hot air and my book does you no good, just get a refund.

But if you read it and act on the recommendations, every question raised in this thread will be answered in full --- along with just about every security/spam/hijacking/etc. query ever raised on this forum.

Best regards,
- Bill Hely
- Author: The Hacker's Nightmare
- http://HackersNightmare.com

How to keep hackers, worms and other 'germs' out of your PC.

Messages In This Thread

Has your email address ever been hijacked .. ??
Paul White -- Thursday, 28 October 2004, at 11:50 p.m.
Re: Has your email address ever been hijacked .. ??
Phillip -- Friday, 29 October 2004, at 2:23 a.m.
Not yet.
Sam Freedom -- Friday, 29 October 2004, at 7:14 a.m.
Re: I Need Help Finding This E-Mail Spoofer!
Robert C. Potter -- Friday, 29 October 2004, at 4:14 p.m.
Re: I Need Help Finding This E-Mail Spoofer!
Dave Reno -- Friday, 29 October 2004, at 5:00 p.m.
ps
Sam Freedom -- Friday, 29 October 2004, at 7:16 a.m.
?????????
Paul White -- Friday, 29 October 2004, at 8:46 a.m.
Ok Then...
Sam Freedom -- Friday, 29 October 2004, at 9:12 a.m.
Re: Ok Then...
Paul White -- Friday, 29 October 2004, at 9:27 a.m.
Re: Ok Then...
Sam Freedom -- Friday, 29 October 2004, at 10:21 a.m.
Re: Has your email address ever been hijacked .. ??
Bill Hely -- Saturday, 30 October 2004, at 1:41 a.m.
Re: Has your email address ever been hijacked .. ??
Chris -- Sunday, 31 October 2004, at 4:17 a.m.
Re: Has your email address ever been hijacked .. ??
Bill Hely -- Sunday, 31 October 2004, at 5:09 a.m.
Re: Has your email address ever been hijacked .. ??
Peter Shavel -- Saturday, 30 October 2004, at 8:26 p.m.
Re: Has your email address ever been hijacked .. ??
Paul White -- Saturday, 30 October 2004, at 10:02 p.m.

[ View Thread ] [ ] [ Return to Index ] [ Read Prev Msg ] [ Read Next Msg ]

How To Forum is maintained by HowToCorp with WebBBS 5.12.

IMPORTANT NOTE FOR EXISTING BOARD MODERATORS
Existing 'How To' Forum Moderators, please register for a new account at
www.howtocorphelp.com/forum and then drop me a help desk ticket at
www.HowToCorpHelp.com to have your account upgraded to moderator level.



 


"How To" Products On The Net

  * Discover how to start your own forum today!

  * Produce your own award-winning Newsletters for print or online

  * Develop your own money-making Ezine

  * Articles should be your #1 form of marketing - 'Ezine Editors List'

  * Make memorable and professional Presentations and Speeches

  * Learn how to create and use Adobe PDFs with 5-Min PDF Creator

  * Create Digital Products for yourself and make money selling them online

  * Listen in on the Create A Product - Teleseminar and discover Michael Green + 4 other experts

  * Live a happier and less stressed life

  * Protect your ClickBank or PayPal sold product from theft!


  * How To Achieve The Swing In Golf

  * Discover the meaning of your dreams

  * How to promote absolutely ANY product online

  * Increase your sales letter conversion rate with Sales Letter PERSONALIZER

  * 'Instant Movie Making' secrets for beginners or more advanced Film Makers

  * How To Joint Venture -- The 10 Laws Of Setting Up Exceptional JV's.

  * Make money with Pure AdSense Gold

  * Discover How To Blog For Cash today

  * NEW! Command ALL the traffic your desire with Traffic Czar

And now from Michael Green's WorkingDocs.com

  * Your Corporate Email Usage Policy is ready to go

 *  Your Corporate Internet Usage Policy is ready to go

 


 

 


 

NOTE: Posts Without Valid Email Addresses Will Be Deleted. The Moderator Reserves Right To Delete or Edit Any Message. Posts Containing Blatant Advertising Or Spam Will Be Immediately Removed!

HowToCorp Privacy Policy

The views and comments expressed on The "How To" Internet Marketing Forum are not necessarily those of Michael Green and How To Corp.
Postings may be reprinted and used elsewhere. All Contents And Postings © Michael Green & How To Corp - All Rights Reserved