Slashdot Mirror


AOL, MS & Yahoo Unite On Anti-Spam Initiative

dilaudid writes "FT.com has an article about AOL, Yahoo and MS putting aside their differences to combat spam. An AOL VP is quoted as saying "Our customers are telling us it is the number one problem with the internet." Their intended response is "narrowly-defined federal legislation aimed at so-called "king-pin" spammers" who send the bulk of the mails. "

41 of 300 comments (clear)

  1. A valid use for a buttload of cash? by ChaoticChaos · · Score: 4, Interesting

    Finally! The Evil Empire has thought of something truly helpful to do with the 1 trillion dollars of cash. ;-)

    I am concerned that when all of this is said and done, only users of a Microsoft OS will not receive spam. ;-)

    1. Re:A valid use for a buttload of cash? by fredrikj · · Score: 4, Insightful

      I am concerned that when all of this is said and done, only users of a Microsoft OS will not receive spam. ;-)

      That makes sense, actually. What if the "solution" would be to only accept and forward messages with a valid DRM certification?

  2. You know your a scumbag when... by bwt · · Score: 5, Funny

    You know your a scumbag when...

    Slashdotters support AOL and MS when they attempt to stomp on you.

    1. Re:You know your a scumbag when... by Ogrez · · Score: 4, Funny

      1. Claim lost revenue from spam on your network 2. become peoples champion to stop spam 3. sue spammers with popular support 4. PROFIT!! 5. Increase ISP fee's for spam free network 6. PROFIT!!

      --


      Fire in the hands of the village idiot is no tool, but a weapon of mass destruction
  3. Let's get ready to fumble? by sporty · · Score: 3, Funny

    Between this story, the Open Internet story, spammers sueing Journalists and what not...

    I may have to start a betting pool.. and maybe get some popcorn as the hilarity ensues on, "Internet Deathmatch".

    --

    -
    ping -f 255.255.255.255 # if only

  4. Let's hope by WCMI92 · · Score: 3, Interesting

    That this puts scumshit like Ralsky out of business... I'm getting sick and tired of receiving upwards of 100 spams a day.

    2 months ago less than 50% of my incoming e-mail was spam. Now it's running 65%.

    --
    Corporatism != Free Market
  5. In Other News... by beders · · Score: 5, Funny

    Microsoft drop Windows, and decide to give all money away to Linux kernel developers.

    First a free internet and now this, do they realise that they're ment to be the bad guys?

  6. Huh? by FrostedWheat · · Score: 4, Funny

    ... federal legislation ...

    I feel better already.

    1. Re:Huh? by stratjakt · · Score: 5, Informative

      That's good. I dont want "black hole" lists at the ISP level.

      I dont want providers arbitrarily deciding that some IP block can no longer send me e-mail.

      Because then you wind up with some person/comittee with an agenda deciding that I can no longer get e-mail from, say, a group with an opposing point of view. If Bill Gates controlled the black hole list, maybe kernel.org shows up on it. If RMS controlled it, hotmail would show up on it.

      It's a bad system, wide open to abuse. Punish the criminals, don't hinder the internet.

      --
      I don't need no instructions to know how to rock!!!!
    2. Re:Huh? by IAmRenegadeX · · Score: 3, Insightful

      I completely agree -- notice I didn't say "I wish they'd use the black hole lists," I just said they never mention them.

      Like you, I am glad there isn't a single source of record for "e-mail blocking", especially one that is controlled by a company or government shill.

      However, it'll be a cold day in hell when we're able to completely block what everyone thinks is spam...

    3. Re:Huh? by rizzo · · Score: 4, Informative

      Just another personal note on black hole lists. I thought they were the greatest thing since sliced bread until somehow my IP ended up on one. My web/email service is on a shared host. The host itself doesn't host any adult content, but the IP that it had recently acquired was listed in the same IP block as pretty much every adult/teen/kiddie porno site you can think of, and most that you can't think of. Ameritech subscribed to the blacklist and so I couldn't forward my domain mail to my ameritech.net account. It was a weekend from hell.

      --

      "More organs means more human." - Zim

  7. Real "wrath of God" type stuff by MondoMor · · Score: 5, Funny

    Dogs and cats, living together...

    [b]mass hysteria![/b]

    WTF. MS et al joining together to resist fundamental changes to the internet, and AOL moving to stop SPAM.

    What's next? The fall of communism?

  8. AOL CENSORS THEIR EMAIL by blakestah · · Score: 5, Interesting

    AOL is currently using censorship to try to solve their problem. Their customers want the ISP to stop spam, and AOL interprets this as a license to censor incoming mail for "spamness".

    It never occurred to them that perhaps the customer should decide what is and is not acceptable.

    This form of spam-filtering is very dangerous - when someone else decides for you who can and can not send you email.

    1. Re:AOL CENSORS THEIR EMAIL by FyRE666 · · Score: 4, Interesting

      Well I believe all ISPs should offer two separate pop addresses for their customers. One would be totally open - free to spew all manner of sewage from the scumbags sending spam. The other would be filtered. Subscribers would be free to choose which they used.

      I'm guessing option 2 would see by far the most use. Hell, if the filter worked 90% of the time I'd use it at my ISP...

  9. Huh? by IAmRenegadeX · · Score: 5, Informative

    Did you read the article (or even the /. blurb?)

    The groups said they were particularly looking for narrowly-defined federal legislation aimed at so-called "king-pin" spammers whom they believe are responsible for the largest volume and most pernicious of unwanted e-mails.

    They're looking to legislate the "spam kings" to death, not block mail from them for their collective subscribers. Funny, however, that they continute to ignore "black hole" lists that are actually quite good at deleting/preventing spam.

  10. My favorite show by Joe+the+Lesser · · Score: 4, Funny

    Expensive Internet Access! Corporate Invincibility! Internet Community!

    With your powers combined, I am Captain Corporate!

    (chorus)
    Captain Corporate,
    he's our hero,
    gonna take spam down to zero!

    --
    "I only speak the truth"
    Karma: null(Mostly affected by an unassigned variable)
  11. I'm frightened by 91degrees · · Score: 4, Funny

    Two stories in a row about MS doing the right thing! I think this is all part of a cunning plan. We'll soon see stories like "MS demands the DMCA is repealed", "MS releases secure OS", "MS replaces Windows EULA with GPL".

    A short time later, after gaining the support of all the geeks in the world, we'll see "MS decides to take over and enslave the world", and there will no longer be any organised geek resistance to prevent this.

  12. Bullshit by missing000 · · Score: 5, Interesting

    Its obvious, but something to note, that you need to have a yahoo/aol/msn email account to see all the benefits of this anti-spam initiative.

    Nope. RTFA. It clearly says the plan includes suing the hell out of the spammers. If they can't turn a profit, everyone gets less spam.

  13. Exceptions by SuperBanana · · Score: 3, Interesting
    Their intended response is "narrowly-defined federal legislation aimed at so-called "king-pin" spammers" who send the bulk of the mails. "

    Wait, lemme guess- that "narrowly-defined" definition of "spammer" will not include internet service providers advertising their services, nor companies the ISPs have paid to spam their subscribers?

    My grandmother got porno spam within 2-3 days of her MSN "internet appliance" getting set up, and it had a very unusual account name(with numbers in it, too)- no dictionary atttack hit this one. She hadn't even figured out how to surf the web yet. Wanna guess who sold out her email address? First 3 guesses don't count.

    1. Re:Exceptions by NanoGator · · Score: 3, Insightful

      " Wanna guess who sold out her email address? First 3 guesses don't count. "

      How do you know her email address was even sold? Ever have a Hotmail address? It doesn't come because it's sold, the spam comes because of the brute force spam attacks on it.

      Why buy a list of email addresses when you can get millions of hits at *@msn.com?

      --
      "Derp de derp."
    2. Re:Exceptions by saintashi · · Score: 4, Funny
      Wanna guess who sold out her email address?

      Since it couldn't possibly be those lovely people at MSN, I can only assume that it was you.

      I guess this is proof that there are people out there who would sell their own granny's email address... :)

    3. Re:Exceptions by Otter · · Score: 5, Insightful
      Wait, lemme guess- that "narrowly-defined" definition of "spammer" will not include internet service providers advertising their services, nor companies the ISPs have paid to spam their subscribers?

      My primary email account has disappeared under an avalanche of bounces and blocks from some asshole spammer forging my domain name in everything he sends out. I'm job hunting now, and refuse to install some new untested filters that are liable to throw out something important. So I need to wade through hundreds of returned ads for streaming gay porn.

      If these companies can put a stop to the total scumbags, they can include a provision that their ads can be sent over the NSA's secret high-speed network. I'll still be grateful to them.

      My grandmother got porno spam within 2-3 days of her MSN "internet appliance" getting set up, and it had a very unusual account name(with numbers in it, too)- no dictionary atttack hit this one.

      Maybe, but my suspicion is that you underestimate the magnitude of dictionary attacks on common domains like that. Given millions of idiots, all MSN addresses are shallow.

  14. Great... by $0+31337 · · Score: 5, Funny

    Now I suppose I can expect the following in my inbox:

    04/28/2003 sdogin@microsoft.com Join the fight against spam!
    04/28/2003 asgasg@microsoft.com Join the fight against spam!
    04/28/2003 dfjdfdsagsdg@aol.com Join the fight against spam!
    etc, etc, etc.

  15. Re:yeah yeah we don't want to buy more hardware by leviramsey · · Score: 4, Insightful

    RTFA. The main reason they're pushing for this is because their customers are telling them that the spam is decreasing the value of their offerings.

  16. Spam wouldn't exist without morons by Stiletto · · Score: 4, Insightful


    If the number one problem with the Internet is spam, then the number two problem is all the idiots who buy products from spammers and keep them in business.

    Spam will never stop. Just like junk snail-mail will never stop. The tiny percentage of below-freezing IQ's out there who fall for unsolicited "offers" are ruining it for everyone else.

  17. AOL, MS & Yahoo, again? by ackthpt · · Score: 5, Interesting
    Seems it must be a sign of a new quarter or spring or moon phase. Ultimately the only way to put a stop to spamming is a few civil trials (possibly criminal, too, wire fraud, etc.) and hang a few examples out to dry. I do believe quite a few spammers are the average schmuck who thinks they can make a few quick bucks. Bust them across the knuckles and others will get the message.

    Perhaps if these three got together and ran some decent television commercials which cut to the core of spam it would greatly reduce, i.e.

    Would you buy questionable medications from someone who solicits you from a forged email address?

    Would you consider giving your personal financial information to someone incapable of proper grammar or even good spelling?

    Would you visit a site alleged to contain pr0n/child pr0n knowing your visit may be tracked?

    (some percentage, like 100%) of spam is unsolicited, commits an act of trespassing, is made by people who have nothing of actual value to offer and is intent on defrauding you. Visit www.cauce.org for more information.

    Sadly, these companies will trumpet how spam costs billions of dollars, but a few million on public information awareness advertising is beyond them. Hell, I don't even see anti-spam public service annoucements on MSNBC or Yahoo. Smells like more ado about nothing.

    --

    A feeling of having made the same mistake before: Deja Foobar
  18. AOL anti-spam crusaders? by jolyonr · · Score: 5, Funny

    Great! After they've sorted out the SPAM problem maybe they can find out who the hell keeps filling my mailbox full of unwanted Internet CDs.
    . . Oh.

    --


    Please read my Canon EOS tech blog at http://www.everyothershot.com
    1. Re:AOL anti-spam crusaders? by Elbereth · · Score: 4, Funny

      You think getting the occasional CDROM from AOL is bad? Try getting 20 or 30 CDROMs from MSN, all at once. It happened to me about a week ago. I guess the post office got confused and delivered all the MSN CDROMs destined for my neighborhood to my house. It was in a bulk package, with my name and address on the top.

      At least I know the names of all the single women in my neighborhood now.

  19. Dumb and Dumber by photon317 · · Score: 3, Interesting


    Spam can be solved very, very simply. Everyone with a brain cell knows this. People need to stfu and do it right. I'll outline the basic steps of one way to do it, there's many others equally simple and valid. Actually, in this outline I'll solve not only the problem of spam, but also the problem of adult content on the web and filtering it for children. Needless to say you can combine the two to stop porn spam too. Here goes:

    1) Set a technical standard for senders to classify emails in the header fields. Say, an X-header like "X-Mail-Classification: ". Give it three legal values: "UCE", "SCE", and "Personal". UCE is Spam, SCE is when you told a company explicitly that they could spam you (you really did visit their site and give them your address for future announcements or whatever), and Personal is anything else.

    2) Set a similar technical standard for rating the adultness of websites. Make an HTTP header field, call it "Content-Rating", with a range of values similar to modern cable TV ratings (first a rating like PG-13, R, etc... followed by WHY (R - Violence, X - Strong Sexual Content, etc..).

    3) Pass a bill in congress making it a legal requirement that all sites and emails MUST contain these headers, unless they fall in the "best" category (by that I mean, emails which actually fall in the Personal category are not required by law to state this, and websites which would have a G rating are not requried to state this). Failure to have a rating results in fines, having an obviously false rating (porn site rated PG, etc) results in even bigger fines - repeat offenses land you in a federal pound-me-in-the-ass prison.

    4) Obviously once the headers are well-defined, and prevalent because of the legal requirement, software vendors need to mod email clients and web browsers to recognize these headers, which is extremely trivial. The user can then block bad sites and trash bad emails automatically or do whatever else they wish. If something makes it through the system (unwanted porn, unwanted UCE), you've got a clear case that they failed to properly label it with headers, which violates the new law above and lands them with criminal fines.

    --
    11*43+456^2
    1. Re:Dumb and Dumber by dknight · · Score: 4, Insightful

      This works only assuming that all email/websites/etc... are within the US. I know we like to police the world, but even we couldnt pull THAT one off.

  20. What really needs to be done by Monoman · · Score: 4, Insightful

    * Use existing laws: I am sure there is more than enough laws already on the books that cover "fraudulant and egregious methods to disguise and misrepresent". We don't need laws specific to spam we should use generic laws that cover communications fraud.

    * Go after those that hire spammers too. If I contract someone to perform a service and I know their methods are not legal then I should be held liable too.

    * Don't depend on laws to fix everything. Fix the system!

    --
    Keep the Classic Slashdot.
  21. Doubting Yahoo's commitment to this ??? by adzoox · · Score: 4, Insightful
    I have had Yahoo mail for almost 9 years now. I was getting about 3-4 messages a day all the way up to 2001 when they started charging for premium services. Then an avalanche of SPAM hit. Now at 300+ a day.

    I do realize everyone's SPAM is at insane levels and SPAM has gone up in the last 3 quarters. That said, I have very intelligently and precisely made my 15 free filters and none of them work on Yahoo mail. Middle of last year, I decided to chunk down the money for the premium email account. I used up the free 35 extra filters pretty quick.

    It is my opinion that Yahoo allows junk mail, in fact, dumps it heavily on it's customers so that they will buy a premium service.

    --
    Yell & scream & rant & rave... it's no use... you need a shaaaave ~ Bugs Bunny
  22. And if you lie about the headers? by unfortunateson · · Score: 5, Insightful

    The spammers will claim they all fit in the personal communications requested by the recipient, and are not required to fill in all that rigamarole.

    And you're right back where you started from.

    No, the solution is to inform people that
    a) Your body parts aren't going to get bigger (bellies excluded)
    b) You really don't want to trust your finances -- even credit bailouts -- to people who'd SPAM you
    c) There are no dignitaries in Nigeria that have millions of dollars they need to launder into the US, and if they did, you'd be arrested
    d) There's no need to pay for porn. Go out into the big blue room and you could find someone real. Besides, there's enough free internet porn, just look.

    You get SPAM because it works. People buy this crap. If they didn't, the spammers would stop.

    --
    Design for Use, not Construction!
  23. Kingpins not enough. Guarded email, etc. by dwheeler · · Score: 3, Informative
    Attacking the kingpins will probably have a very nice short-term effect. But will it really help long term? I doubt it. Instead, there will be new kingpins in countries outside their control, perhaps in places where it's still legal to crack into other computers. Also, there will be a gradual increase in spam from the large number of other spammers.We need techniques that work long-term.

    If you're interested in countering spam, please check these out:

    1. http://www.dwheeler.com/essays/stopspam.html - essay about techniques to stop spam
    2. http://www.dwheeler.com/guarded-email - a paper about Guarded Email, a challenge-response system that might really help.
    --
    - David A. Wheeler (see my Secure Programming HOWTO)
  24. You just don't have enough friends. by raehl · · Score: 4, Funny

    The obvious problem here is that you're a social recluse and have not been increasing the number and quality of your relationships to keep pace with the number of people who want to sell you stuff. If you had, the percentage of your email that is spam would have remained the same or perhaps even decreased.

    Don't blame the spammers. Leave the house more.

  25. Drug War Parallel by limekiller4 · · Score: 4, Insightful

    This is kind of funny, the parallels between the spam wars and the so-called drug wars. I call say this because it is more appropriately labeled "war on some drugs." But that's another rant.

    But isn't it interesting that they (meaning AOL et al) are going after the big offenders and not, say, THEMSELVES? After all, they are analagous to the street-level pushers of the spam. The big spammers ("kingpins") are the ones who create the spam and are the nexus for it's origin. The product is then filtered down until it reaches the local ISP of the client/user and finally handed to the target -- the customer.

    You might object and say, "the difference between drugs and spam at this level is quite sharp because drug users want the drug. Spam receiptients do not." Well SOMEONE is buying. Spammers don't spam because they think their literature amounts to avant garde exercises in promotional haiku. They spam because someone pays them to. And someone pays them to because someone is buying. In other words, every nickel they spend on spam comes back to them dressed up as a dime. It's as simple as that. The only real difference between the two analogies when you consider it is that spam is less visible because of the inherant privacy and legality of spam. That's all. You still have a product, you still have a buyer and you still have a larger community that must deal with the fallout of that activity.

    However, this is the point at which the analogy breaks.

    The community normally goes after the street-level dealers and the users. Of course the dealers have little to lose because they're poor to begin with and there will always be someone to deal. Always. And users/buyers are always going to use/buy. So go after the source, right? This makes sense, right?

    So why are over half (55%) of all federal prisoners drug offenders?

    This would be like Microsoft and AOL suing themselves half to death and prosecuting the recipients of the email when they purchased wares sold by spam. Never mind the fact that buying after seeing a spam isn't illegal. That's not the point. The point is that even if it were, it is an obviously flawed and ineffective model. It just doesn't work.

    --
    My .02,
    Limekiller
  26. Technical Pressure by linuxwrangler · · Score: 4, Insightful

    One thing that the big ISPs could do is exert technical pressure to help deny spammers the ability to hide. I would love to see them reject all mail in which the HELO greeting is not fully qualified and resolvable (as required by the RFCs). Same thing everywhere else a domain appears in an SMTP conversation. This would force a mass cleanup of incorrectly configured mailservers and I would be able once again to include that as a requirement on my server.

    Although perhaps exceeding the requirements of the RFCs, they might also consider refusing mail if the HELO/EHLO does not resolve back to the connecting IP.

    In addition, they could publish via DNS info records or ?? the IPs of all their outbound mail servers (no MX won't work - that's only for inbound mail). It would be great to be able to bounce all mail "from" someone at yahoo/hotmail/aol/etc. unless the connection came from a mailserver associated with that email address (sure, for some people the mail may have been legitimately relayed before arriving at their site but that has never been the case for my servers).

    --

    ~~~~~~~
    "You are not remembered for doing what is expected of you." - Atul Chitnis
  27. Use RBL/SpamCop/Spews to force AUTH BASE SMTP by cybrthng · · Score: 3, Insightful

    Come on!!!

    There is spam because the system is insecure. Force AUTH based SMTP and use SSL.

    Use RBL's, SpamCop and Spews to blacklist people who don't want to grow up and be secure! Big ISP's should do this, Cable & DSL providers should do this.

    With wireless tech i can login to anyways network and spam away as long as i'm behind an IP address allowed by there servers.

    Its LONG overdue! Use our preventative technologies to enforce some decisions for the better of the network, not the perogatives of a select few!!!!!

  28. IIS, Spammers, and a handy little shell script. by BigBlockMopar · · Score: 5, Interesting

    Finally! The Evil Empire has thought of something truly helpful to do with the 1 trillion dollars of cash. ;-)

    Well, enough spammers seem to use IIS... Maybe they could "extend" the HTTP protocol to detect whether the referring website URL was received in a spam, and use it to disable the server... :)

    Until then, my little script works well enough:

    #!/bin/bash
    COUNT=0
    while [ $COUNT -lt 2000 ]; do
    lynx -dump $1?YOU_FILL_MY_MAILBOX_WITH_UNSOLICITED_CRAP_AND_I _WILL_DO_THE_SAME_TO_YOUR_WEBLOGS
    let COUNT=COUNT+1
    echo $COUNT
    done

    Note that my website includes a warning about what happens to unsolicited e-mail. Apparently, the "Order Viagra, Diet Pills & more with NO PRESCRIPTION!" people wanted to stress-test their IIS server at Beijing Telecom.

    284
    The page cannot be displayed
    There are too many people accessing the Web site at this time.

    Please try the following:
    * Click the [1]Refresh button, or try again later.
    * Open the home page, and then look for links to the information you want.
    HTTP 403.9 - Access Forbidden: Too many users are connected
    Internet Information Services
    Technical Information (for support personnel)
    * Background:
    This error can occur if the Web server is busy and cannot process your request due to heavy traffic.
    * More information:
    [2]Microsoft Support
    References
    1. javascript:location.reload()
    2. http://www.microsoft.com/ContentRedirec

    Poor spammer. But then again, I'm only fulfilling his wish...

    --
    Fire and Meat. Yummy.
  29. Re:huh? nobody gets that much spam by letxa2000 · · Score: 3, Informative
    I get upwards of 100 legit emails a day, with 4 ! very public addresses that are years old, and I never get more than 5 spams a day. WTF are you doing to get that much spam?

    That seems hard to believe. If you have domain names registered with your email address, you'll get spam. If your email has been around more than a few years, you'll get spam.

    My email has been active since 1994 and while I don't plaster it everywhere I don't make huge efforts to hide it since I feel that being able to send me email is what my email address is for. I get about 100 per day, although with my Bayesian filter now operating I only see one every couple of days.

    I find it hilarious that MS and AOL is bitching about spam, their open relays enable most of it. My spam originates from MSN, sHotMail, AOL, Yahoo,

    Me thinks you don't know much about spam. Most spam doesn't originate or go through MSN or Hotmail, they just claim to originate there so people like you are fooled into believing that MSN and Hotmail are the cause of the problem.

  30. BS by wardk · · Score: 4, Interesting

    IMHO

    ulterior motives are at work...

    if AOL was serious about stopping spam, they'd catch it on the way out. I had 4 this morning that ANY decent filter would have caught (it's at work, so I am stuck with a krap filter).

    if aol/msn seek legislation, better read the fine print, cause the real meat isn't in the title/stated intent.