Slashdot Mirror


Microsoft and the SPAM Game

The Seattle Times reported a while ago that Microsoft is pushing for Washington State Senate Bill 5734 which will overturn most of Washington State's laws that specify monetary penalties for companies who send out spam. This will completely exempt ISPs from current Washington spam laws, which Microsoft just happens to be. It seems that they are jumping the gun a bit. They are having a company named Digital Impact (save that address for you spam filters) send the email for them. Thankfully I live in Seattle so maybe I can collect an easy $500 before Microsoft guts the current law.

24 of 252 comments (clear)

  1. Micrososoft? by Anonymous Coward · · Score: 5, Funny

    Slash-dodo-dot.

  2. Micrososoft?? by Estragon · · Score: 5, Funny

    Is that a skin cream? Micro-so-soft!

    --
    I rejoice that there are owls.
    1. Re:Micrososoft?? by Phroggy · · Score: 4, Funny

      Is that a skin cream? Micro-so-soft!

      Works as mosquito repellant too.

      --
      $x='S24;r)>63/* h@<5+oZ)32"5cz';$me='phroggy'x$];
      $x=~y+ -xz+\0-Tx+;print$_^chop$me for split'',$x;
    2. Re:Micrososoft?? by grep_a_life · · Score: 5, Funny

      Really? Last I heard, they kindda attract bugs.

      --

      I drink, therefore, I am.
      -- W. C. Fields
  3. Great.... by JoeLinux · · Score: 5, Funny

    First they invade Userfriendly, now even Slashdot has advertisements for them, now they are going to spam us directly. I wonder if you use that stupid MSN spam filter to filter them out, if it would do it. Maybe it "accidently" lets them through. Hmm...anyone try it?

    JoeLinux

    Arguing on the internet is like winning the special olympics: even if you win, you're still retarded.

    1. Re:Great.... by linuxghoul · · Score: 4, Informative

      Well, there is a monthly "features" mail that i get on my hotmail account from "staff@hotmail.com" that

      cannot be blocked
      cannot be marked as "junk mail"
      cannot be forwarded ( say to "abuse" at hotmail.com)
      does not specify how i can stop recieving it

      i think its the worst kind of spam possible. no other spam msg has made me feel so helpless and so angry. The fact is only hotmail itself could spam its users in this manner...they have a system where the "this is junk mail", "block sender" buttons etc, do not even appear when u view the msg. The first time i rcvd it was when i finally decided to get my own domain and buy some decent email hosting. I have still not completed the switching over, but am getting there...i definitely wont miss hotmail. its weird when one of the largest companies in the world finds it useful to spam its users.

      Ghoul2

      --
      Sigura Non Grata
    2. Re:Great.... by akiy · · Score: 4, Informative
      Well, there is a monthly "features" mail that i get on my hotmail account from "staff@hotmail.com" that cannot be blocked cannot be marked as "junk mail"

      Actually, you can block those e-mail by going into Options, Custom Filter, and creating a rule that states, "Deliver mail that contains staff@hotmail.com in the from addr to my Junk Mail folder."

      Works for me.

      --

      --
      http://www.aikiweb.com - AikiWeb Aikido Information

    3. Re:Great.... by Fishstick · · Score: 4, Funny

      My Butterfly is really tough on Spam. Except when Bill comes around -- then he spreads easier than Skippy.

      --

      There is much cruelty in the universe, John.
      Yeah, we seem to have the tour map.

  4. save that address for you spam filters by Anonymous Coward · · Score: 5, Funny
    Yes, I think I will save it for me spam filters. The Micrososoft filter that is.

    This will completely exempt ISPs from current Washington spam laws, which Microsoft just happens to be.

    So Microsoft, aka Micrososoft, just happens to be a Washington spam law, or maybe you meant they happen to be an ISP? Nice job.

  5. Where's the innovation? by peterdaly · · Score: 5, Funny

    Come on now. Spam is so old school. It's legacy. The wave has already crested.

    Why can't they come up with some new inovative way to plaster ads in front of internet users? These people control the desktop, and 99% of the browser market after all.

    At least companies like Gator offered new and different technology to monetize the users.

    Microsoft is better than this. I never thought they would have to stoop as low as sending spam. They must really be hurting for new cashflow sources to impress "The Street."

    -Pete

    1. Re:Where's the innovation? by lavalyn · · Score: 5, Funny

      You're asking Microsoft to innovate. That's like asking Amazon to develop creative new business processes.

      --
      Doing the Right Thing should not be preempted by making a buck.
  6. Easy? Hardly. by SexyTr0llGal · · Score: 5, Informative

    Thankfully I live in Seattle so maybe I can collect an easy $500 before Microsoft guts the current law.

    I also live in Washington state, and I can tell you from experience: collecting the $500 will not be easy. Here are the ideal conditions for a lawsuit (taken from the Peacefire webpage, which I have been a member of for four years now):


    * The defendant is a corporation, and you know the state where they are incorporated. (Usually, the state where they're incorporated is either the state where they're located, or Delaware -- because Delaware makes it easy to incorporate there.) Legally, a company cannot use "Corporation" or "Inc." or "Incorporated" anywhere, unless they really are a corporation -- but that won't tell you where they're incorporated, or even if they're incorporated in the U.S. Unfortunately, with most spam, you can't even find out the name of the company that sent it, much less whether they're a corporation.

    * You can easily prove one of the following (one of these conditions must be satisfied to show that the spam violated the law):

    * The sender address ("From:") or return address ("Reply-To:") was forged. If you get mail from an address that looks blatantly forged, like "98of292h38h2r@hotmail.com", send a blank message to that address, and keep the error message that comes back to you saying that there is no such address. This can be used to prove, in court, that the spammer violated Washington's anti-spam law by forging the return address. The subject line was "misleading". This is a subjective determination, one that will ultimately be made by the judge. One of the spammers that I'm suing, sent me an advertisement with the subject line "Shareholder request", which I considered blatantly misleading since Peacefire doesn't even have "shareholders". (The gist of the advertisement was, "You will look good in your shareholder's eyes if you use our product.")

    You have registered your address with the WAISP (http://registry.waisp.org/) registry -- to sue a spammer under Washington's law, you have to be able to show that there was some way for the spammer to determine that you lived in Washington.



    More power to you if you can collect the $500, but it's a tough road ahead.

    1. Re:Easy? Hardly. by Anonymous Coward · · Score: 5, Informative

      I've sued over 20 spammers in WA, and collected or settled from most. Spammers paid for this P4 laptop!

      99% of the spams I receive violate the law because they forge the headers in some fashion, use a misleading subject or use a third party domain name without permission. Using an ISP domain name for the return address is often an easy one as they rarely have permission to do so. Making up a fake persons name also qualifies as header forgery, and this seems to be very common at the moment.

      It's usually fairly easy to find the company behind the spam, unless it's a blind order form. After all, they are usually trying to sell you something. Once I get a phone number, I call and ask for the company name and address as I'm sending a package. It never fails.

      If it's a mortgage lead spam, I set up a name and voicemail box and submit that to the lead form. When the mortgage company calls, I get hold of a manager and warn them if they don't tell me where they got my details from (in a written affidavit no less), I'll include them in the suit. This usually works. At the very least the spammer won't be getting any more business from them.

      A quick free search on Dun and Bradstreet or http://www.searchsystems.net/ and you can easily locate most companies once you have a name, address or phone number.

      If they don't turn up on D&B, they probably aren't worth suing. With so many spams, I usually pick the companies that sent at least eight spams (8 x $500 =$4000 limit in Small Claims court) and that are listed in D&B. Dun and Bradstreet will also do collections for you, and in my experience they are quite effective since a companies credit record is at risk.

  7. Microsoft and spam don't mix by lavalyn · · Score: 5, Funny

    I am John Doe, loyal employee of Microsoft. I seek the assistance of someone who is genuinely interested in entering into a business relationship with me. As you know, Bill Gates was the ruler of Microsoft before quietly resigning a few years back. Corrupt governments deemed his business illegal, and as a result, his business accumulated assets were frozen.

    I therefore seek your assistance in providing a safe and genuine bank account to temporarily store my leader's rightfully owned assets. For your assistance, 0.01% of his assets ($2.76 Million Dollars) will be left in your account as payment.

    Note that there is no risk for you or your family, but keep this correspondence private, as this is a matter of great secrecy. As soon as we receive your letter of acceptance/acknowledgement/, I shall give you more on this transaction.

    --
    Doing the Right Thing should not be preempted by making a buck.
  8. This will completely exempt ISPs by stratjakt · · Score: 5, Insightful

    Frankly it sounds like a good bill, and just because MS is supporting it doesnt mean you shouldnt.

    Do you want the laws to lead down a path where your ISP is financially liable for your actions? Because that road goes to the place where your ISP turns over audited logs of everything you've done to avoid liabilities.

    --
    I don't need no instructions to know how to rock!!!!
  9. Re:The Ultimate Solution to Spam by Scumbag+Tracker · · Score: 4, Informative

    Nice idea, but flawed. Spammers do not normally use real e-mail addresses anyway, and their invalid ones may actually map onto innocent collateral damage victims.

    --
    I track known Slashdot scumbags on my foes list!
  10. Panic story? by m00nun1t · · Score: 4, Insightful

    How many people have actually gotten spam from Microsoft? I get a few newsletters which I can unsubscribe to at any time. I get very infrequent mails (once every month or two) which are generally pretty targeted to my interests, I think most of them have an opt out.

    This sounds like the way "spam" should be sent - target, restrained, and with the option to opt out. I don't see a problem.

    What experience have other people had?

  11. I don't get it? by Anonymous Coward · · Score: 5, Informative

    Why don't they just obey the law if they want to send spam? Spam isn't illegal in WA, just forging the header or providing a misleading title. If they'd send mail on the up-and-up, there's no problem.

    Taken from the WA lawbook, it's illegal when it:

    (a) Uses a third party's internet domain name without permission of the third party, or otherwise misrepresents or obscures any information in identifying the point of origin or the transmission path of a commercial electronic mail message; or

    (b) Contains false or misleading information in the subject line.

  12. Re:Why spam? by gricholson75 · · Score: 5, Funny
    They want to send other peoples' spam. For profit.


    Or maybe for a loss. It is Microsoft after all.

    Imagine the power they could weild if they put most of the other spammers out of buisness.
  13. Inaccurate story by bluelan · · Score: 5, Informative
    Ummm, unless Digital Impact is planning on sending out e-mail with fraudulent header information, they won't be violating Washington State law as it stands. The poster of the story doesn't seem to have read the text of the law he provided a link to.

    The current law can be found here. A report on a successfully prosecuted case can be found here. If one reads either, it's easy to see that the current law only applies to fraudulent headers.

    Given that the current law only covers fraudulent headers, I doubt that Microsoft is maliciously trying to destroy the current law.

    However, last year the senate introduced bill 6568 which extended the old law to require that commercial e-mail contain ADV: as the first 4 characters of the subject line. That bill passed the senate with flying colors. Unfortunately, it got locked up in committee in the house and died.

    House bill 5734 is a watered down version of last year's senate bill 6568.

    I don't like Microsoft much. That said, the story at the Seattle Times is riddled with half-truths and inaccuracies. For example, it claims that 5734 completely exempts ISPs. The senate summary of the bill says

    Interactive computer services may not be held liable for acting as an intermediary between the sender and the recipient of commercial spam sent in violation of the law, or for providing transmission over its computer network or facilities of commercial spam that is sent in violation of the law.
    So, ISPs aren't liable for transporting SPAM, as they aren't liable for transporting copyrighted material or child porn. They can still be liable for originating, or aiding in the origination, of spam. I think that's a reasonable exemption.

    I'd be really interested in knowing whether lobbyists that are partially funded by Microsoft also supported senate bill 6568 from last year. If so, this is definitely unjustified Microsoft bashing. However, if their lobbyists locked it up in the house then we can villify them for weakening a good bill.

    Too bad the article doesn't comment on that, and I don't have a way to find out.

    --

    I used to be a narrator for bad mimes. (wright)

  14. Nothing says "serious job offer"... by Gorimek · · Score: 4, Funny

    ..like an Anonymous Coward post on Slashdot!

  15. Re:It's all the other spam... by gizmonic · · Score: 5, Insightful

    Okay, I have a few problems with this, especially the comment, "Make ISPs responsible for ANY fraudulent email they transmit or relay. Legally reposnsible as in fines and jail terms.".

    I work for an ISP. I spend about 30 minutes to an hour of my 8 hour day, 5 days a week, tracking down and banning people who spam through our network. Our SMTP server is locked down to our own IPs, and limited to the amount of email it will send for one user, and we have outbound port 25 filters in place across the network. But, people still spam. They run form mail scripts against unsecure servers (we can't exactly block port 80, now can we?). They find open relays running on other ports. And they spam, and I ban their asses.

    Considering the amount of money and time (I'm not the only one at my company who devotes part of my workday to killing spammers) we spend fighting spam, you now suggest we become criminally liable for it? I can tell you right now, if that law passed, we would shut down our SMTP server and that would be that. No outbound mail for anyone. Don't have to worry about spam when their is no email, period.

    You want a workable solution? Allow us to block access to anyone blocking caller ID. Most professional spammers block caller ID because they know we can and do block them by their phone number, if we can get it. But blocking access to anyone who blocks caller ID violates privacy rights according to the FCC and we can't do that. (Mom and Pop ISPs might be able to, but we are a wholesale ISP.)

    Why would blocking by phone number work? Because professional spammers use stolen IDs (credit cards, names, etc) to buy a throw away account that they use until we knock them offline. (We get the subpeona's for logs all the time to track down these people. Most never get caught.) They can get 10 stolen credit card accounts in an hour. Phone numbers aren't as easy to change.

    Take it from someone fighting spam in the trenches, the concept of billing an ISP for any "bad" mail that passed over their server would simply shut down email. Period.

    I won't even get into the debate that if an ISP *were* responsible and accountable for every email you sent, you better damn well believe that they would read and approve of every email you sent before forwarding it. Yay Free Speech! (Free as in hand-cuffs.)

    Whew. Enough ranting. Mod away... :)

    --
    WWJD?
    JWRTFM!
  16. Re:Micrososoft? by Nathdot · · Score: 5, Funny

    Before everybody jumps on the bandwagon to castigate the slashdot editors for poor spelling has anybody considered the following:

    That it was not a typo but a secretive heads-up to Microsoft changing both their name and business focus/strategy.

    That's right!. In the very near future Microsoft is to be known as MicroSoSoft. The new ad campaign will feature, among other things:

    *Fluffy white rabbits and ducklings
    *Adorable scamps kicking a MicroSoSoft plush football around a park.
    *Picnics by beautiful undulating streams.
    *The amazing results of MicroSoSoft fabric softener on both whites and colors.

    Now lavish your kudos on krow for his timely covert communique. Dissemination for the people!

  17. In defense of Digital Impact. by Upright+Joe · · Score: 4, Informative

    Don't jump on digital impact too hard. I work for a MAJOR e-commerce site that contracts with Digital Impact. They are very good at sending out large volumes of e-mail reliably. We use them purely for legitimate, non-spam-type e-mails. Sure with time we could write the code to do it ourselves but they specialize in it. I'm not sure what MS has contracted them to do but as much as I hate to say it, it could be on the up and up. Not all high volume e-mails are spam.

    As for overturning spam laws I'm skeptical that it is in the public's best interest but Digital Impact does offer valuable services.