IT Management articles: tips, advice, ideas, strategies & solutions

WOODRIDGE

IT Management Articles

Subscribe to our IT Management Articles Feeds


Feeds

What's this?

Home > IT Management

Anti-Spam: The Solution to All Your Unsolicited Email Problems

by: Jon Harmer

Everybody hates unwanted email or spam, and without an effective anti-spam solution in place, it costs US companies an estimated $21.8 billion annually (citation: Information Week, "Spam Costs Billions"), including infrastructure and bandwidth costs and the loss of employee productivity. Implementing a powerful tool that helps with stopping spam in the first place can eliminate these outside threats to productivity.

Tips for Stopping Spam

1. If you receive a "suspicious" email message - one from a sender whom you don't know or recognize, simply delete the email. Spammers use code in their emails that helps perpetuate the problem and opening their emails helps them in this regard. A high-tech anti-spam solution will often nip this problem in the bud, however.

2. Stopping spam is as easy as breaking the chain; don't perpetuate unsolicited emails by forwarding or passing along messages that may appear legitimate but are likely hoaxes, for example tales of criminal activities, such as identity theft.

3. Create and utilize a "disposable" email address in place of your primary email address when providing a contact email address for goods and services providers on the Internet. You can forward this disposable address to your primary address, and if the disposable address ever gets compromised and starts receiving a lot of spam - you can simply shut it off and create a new disposable address, stopping the spam being sent by those particular offenders. Many businesses will automatically add you to their email distribution lists and some may share or sell your email address to other companies.

4. When ordering items online, do not check the box that states "YES, I want to be contacted by select third parties concerning products I might be interested in" or something similar.

5. When you register a domain, use a disposable email address in place of your primary email address. Spammers will use "bot" software which automatically "crawls" the public domain registries and other websites to gather email addresses from these public records. Many domain owners use a generic "administrator@" mailbox that they only need to check occasionally. Usually, however, an anti-spam solution, should you have one, will catch these unwanted emails.

6. When you receive unsolicited spam, do not select the box or click the link that states you would like to be removed from their mailing list. By sending a reply to the spammer, you will validate the email address for them. If you're getting spam from a legitimate business, however, asking to be removed from their mailing lists can reduce the amount of unwanted email you receive and begin stopping the spam you are receiving, as they are required to respect your wishes because of the CAN-SPAM Act of 2003, a sort of middle man anti-spam solution.

7. Without a proper anti-spam solution, don't have a "catch-all" on your domain, where any mail sent to something@yourdomain.com gets delivered even if you haven't specifically created the something@ email address. This "catch all" feature is very susceptible to the "brute force" method of spamming, where spammers send an email to every conceivable combination of letters and numbers, (such as a@yourdomain.com, b@yourdomain.com, c@yourdomain.com, etc.).

8. Another spamming method that is harder to defend against is the "dictionary attack" (related to brute force spam attack) that sorts through possible name combinations hoping to find a valid address. Thus, a common name such as john.smith@yourdomain.com may get more spam than a more unique name like jsmith1963iscareful@yourdomain.com. Of course, it is harder to remember the "unique" email address than something like your name.

For more information on stopping spam - see the Federal Trade Commission's whitepaper on how to avoid spam emails.

A Comprehensive Anti-Spam Solution

Reputation Filtering - an anti-spam solution and technique that some email providers use - provides a powerful outer layer of defense for stopping spam. Formerly called "blacklists," reputation filters deliver unmatched efficacy, accurately stopping spam at the connection level up to 80% of the time. This means they can stop the spam without even having to scan the content. The software and appliances used for reputation filtering in this type of anti-spam solution sometimes also support rate limiting capabilities which intelligently slow down suspicious senders--greatly reducing and even stopping the spam, without the risk of false positives.

Often, an anti-spam solution will use commercially available or open source online reputation databases for reputation scoring for IP addresses. If an IP address has a "bad" reputation in one of these databases due to historical monitoring and scoring of activities from it - it will be blocked as a source of spam. The customer's score will increase over time after spam is no longer detected from the customer's IP address. Some services can use several metrics to score an IP address, such as:

--An IP address' presence on multiple reliable public blacklists or open proxy lists like spamhaus.org and Spamcop.
--The number of end-user complaints associated with an IP.
--The number of messages sent to invalid "spamtrap" accounts.
--Global message volume and changes in message volume.
--Frequency of URLs appearing in spam or viral messages.

Content Scanning - Another anti-spam solution that is used frequently involves examining the complete structure and content of a message, including:

--content
--methods of message construction

The most effective anti-spam products use a combination of these and other techniques, to be more efficient at stopping spam as well as to decrease the number of "false positives," or messages stopped by the anti-spam solution that are not actually spam. The combination of techniques is especially useful in the current day when spam techniques are constantly changing. Web Reputation technology measures the behavior and traffic patterns of a website to assess its trustworthiness. Content scanning technology determines the reputation of any URL within a message body, so that a more accurate analysis of the messages can be performed. This enables a certain anti-spam solution to immediately protect its users from spam, phishing, and spyware threats distributed over email, stopping spam in its tracks.
About the Author:
Jon Harmer is responsible for driving adoption and innovation for Cbeyond's messaging and collaboration solutions, joining the company, which offers a business communication solution for every need, in January 2008. Jon has made a significant impact on the organization, leading a team to successfully launch the Hosted Microsoft Exchange email application to Cbeyond customers.
thumb it up
 

 

No. of Times this article has been viewed : 222
Date Published : Oct 7 2009

Most Recently Published IT Management Articles as of

Feb 9 2010    Tips on How to Migrate to a MPLS Network Architecture For Your Business

by Michael Lemm

The positives to your network reliability, performance, and cost make Multi-Protocol Label Switching seem to be a no brainer. But...you're not sure how to migrate from your existing traditional WAN (Wide Area Network) configuration to MPLS.

Feb 9 2010    Tips on a Router Solution For Any Size Business

by Michael Lemm

Your priority for designing a new or upgraded high bandwidth network is of course to deliver reliable internet connectivity .... but with a cost effective solution. Naturally the router configuration chosen is an important piece of the puzzle.

Jan 22 2010    How to Protect Against Denial-of-Service Attacks

by BMA Editorial Team B .

There are many critical steps to keeping your network and applications safe, but how do you protect against denial of service attacks? If an outside party is flooding your email with spam, you won't be able to receive new messages.

Jan 22 2010    What All Is Involved In Getting A T1 Line??

by Michael Lemm

You need a T1 line to meet the bandwidth requirements of your computer network. How do you get one?

Jan 22 2010    Bandwidth Requirements For Video Conferencing

by Michael Lemm

Most of today's companies are maximizing their travel budgets and communication requirements by making smart use of videoconferencing as an alternative to face-to-face meetings.

Jan 22 2010    What Is A MPLS Network?

by Michael Lemm

Nice breakdown and explanation of MPLS networks. What it is and what it can do for you.

Jan 20 2010    Elements of a Good List Building Formula

by BMA Editorial Team B .

If you want to be successful in your online business, it is important that you have a good list building formula. Having a formula for list building can be profitable as you can create an optimal opt-in list of subscribers and customers to whom you can offer and sell your products or services.

Jan 20 2010    IT Vulnerability Threat Concerns

by BMA Editorial Team B .

There are a variety of IT vulnerability threat concerns that businesses are forced to contend with, but by understanding what these risks are and forming a preventative plan of action to mitigate the damage, you can put your company in good stead to fend off and recover from an attack.

Jan 20 2010    Disaster Recovery Best Practices

by BMA Editorial Team B .

Implementing disaster recovery best practices in your business may seem like a time-consuming project, but it's an essential step to protect your resources and reputation in the event of a system failure.

Jan 20 2010    High Paying AdSense Keyword - A Strong Way To Increase AdSense Revenue`

by BMA Editorial Team B .

The AdWords prices are not, what the publishers get from the AdSense clicks, but they give a strong idea about the income chances from different keywords. So if an AdWords ad is expensive, it must also be a high paying AdSense keyword, i.e. it gives a higher income per click...

Jan 20 2010    Five Ways to Get Visitors to Bookmark your Website

by BMA Editorial Team B .

There are many factors to keeping someone's interest on your web page or site. It is not an easy task. Your ultimate goal is to get them to come back repeatedly. There is one precious commodity that most of us do not have much of - time.

Jan 20 2010    Getting The Best Identity Theft Protection

by BMA Editorial Team B .

Identity theft is a crime that occurs when one person steals another person's personal identification information and uses it fraudulently to obtain a service or credit account of some time.

Jan 19 2010    Discussing the Methods Used to Increase Page Rank

by BMA Editorial Team B .

When you are trying to rank a site, there are several levels to go through. First, when you have some content, you need to get the thing indexed and build up some initial links using social book marking and RSS submissions.

Jan 19 2010    Outsourcing Your Information Security Team Needs

by BMA Editorial Team B .

Outsourcing your information security team needs may not be something you've considered, but it can be a smart business move.

Jan 19 2010    5 Smart Ways to Make the Most of Your Call Accounting Software

by BMA Editorial Team B .

If you are looking for a savvy way to improve your business efficiency with a low input, learn 5 call accounting tips to increase your enterprise VoIP network ROI.

12345678910...
Search for ebooks on Management & Business