Slashdot Mirror


I, Spammer

PCOL writes "The Washington Post is reporting on testimony before the Senate Committee on Commerce, Science and Transportation by Ronald Scelson, an eighth-grade dropout and self-taught computer programmer from Louisiana, who claims that he sends between 120 million and 180 million e-mails every 12 hours, that he can break sophisticated software filters 24 hours after they are deployed, and that he has no choice but to resort to forging the sender information in his bulk e-mail so he can be anonymous and maintain his connection to the Internet. He added that he obtained all his addresses legally and that AOL gladly sold him the company's entire customer directory which Ted Leonsis, vice chairman of AOL, did not deny." It's a tough life. Here's another story about the Senate committee meeting.

59 of 730 comments (clear)

  1. Uhhh.. by gurnb · · Score: 4, Funny
    "Mr. Leonsis, are you a spammer?" McCain asked.

    Leonsis, who had testified minutes earlier about how AOL was blocking 2.4 billion pieces of spam per day, did not answer directly.

    "We let members opt out" of commercial messages sent by the company and affiliates, he said. And he accused Scelson of violating the company's "terms of use" agreement by using AOL's membership directory as a source for e-mail addresses. Scelson readily agreed.


    Hello Pot, this is the kettle, you're black!!

    AOL is a bigger part of the problem vs being a bigger part of the solution.

    With great power, comes great responsibility.

    --
    "This must be a Thursday, I never could get the hang of Thursdays."
    1. Re:Uhhh.. by David_W · · Score: 5, Insightful
      Does the never ending stream of AOL CD's mailed in the post not count as spam?

      No, it doesn't. Spam is unsolicited e-mail. What AOL does has been going on for long before the term spam came around. It is also different in that there's no forgery, you can return it to sender, etc. Whether AOL should be sending out tons of CDs is certainly debatable, but it is something different from spam.

    2. Re:Uhhh.. by The_K4 · · Score: 5, Funny

      Actually, have you ever tried to write RETURN TO SENDER on a AOL-mailed CD?
      The post office won't return it.

      Ever taken a bunch of them down to the post office and sent to back certified mail (and request delivery confirmation>?
      AOL sends you a Cease and Desist letter.

      I'm serious, some friends and I did this in college because we were bored.

    3. Re:Uhhh.. by Dr+Caleb · · Score: 4, Funny
      If it walks like a duck, and quacks like a duck

      It might have Mad Cow Disease.

      --
      "History doesn't repeat itself, but it does rhyme." Mark Twain
    4. Re:Uhhh.. by gallen1234 · · Score: 4, Informative

      So turn the tables on them. That's what USPS Form 1500, Application for Listing & Prohibitory Order (pdf), is for.

    5. Re:Uhhh.. by cioxx · · Score: 4, Funny
      That's what USPS Form 1500, Application for Listing & Prohibitory Order (pdf), is for.

      Maybe not. The application states:

      "The attached mailpiece, from the mailer identified below, offers for sale matter that I believe to be erotically arousing or sexually provocative and therefore is a pandering advertisement. Under the provisions of 39 USC 3008, I request that a Prohibitory Order be issued against the mailer and the mailer's agents or assigns."

      Unless you use the AOL CD as an artificial vagina, you won't get far with that application.
    6. Re:Uhhh.. by shayne321 · · Score: 5, Informative

      Unless you use the AOL CD as an artificial vagina, you won't get far with that application.

      Wrong! Go read this page. Go ahead, I'll wait.

      Now, pay special attention to these sections (emphasis mine):

      a. Whoever for himself, or by his agents or assigns, mails or causes to be mailed any pandering advertisement which offers for sale matter which the addressee in his sole discretion believes to be erotically arousing or sexually provocative shall be subject to an order of the Postal Service to refrain from further mailings of such materials to designated addresses thereof.

      ...and...

      Both the absoluteness of the citizen's right under 4009 and its finality are essential; what may not be provocative to one person may well be to another. In operative effect the power of the householder under the statute is unlimited; he may prohibit the mailing of a dry goods catalog because he objects to the contents or indeed the text of the language touting the merchandise. Congress provided this sweeping power not only to protect privacy but to avoid possible constitutional questions that might arise from vesting the power to make any discretionary evaluation of the material in a governmental official.

      It is not up to the post office to decide that you can't get aroused by AOL CD's.. In a nutshell, what's offensive to you may be miles apart from what's offensive to me, so the Supreme Court decided it's not up to the postoffice to make the judgement call. If you deem it offensive, form 1500 applies.

      I've used it successfully to stop CitiBank's incessant bombardment of "you're pre-approved" credit card offers (I was litterally getting 3 a day for a while). Try it, it works.

      Shayne

      --
      Today I didn't even have to use my AK; I got to say it was a good day -- Icecube
  2. Dang it, there goes my stomach lining... by Saint+Aardvark · · Score: 5, Interesting
    "This is censorship," he said, arguing that both anti-spam vigilantes and Internet providers that filter out spam are depriving people of their right to see their mail.

    Dear God, I hope the committee saw through this pathetic little charade. Last time I checked, I had no oblighation to pay to receive advertising; I had no right to force others to pay the cost of carrying that advertising; I had no right to force others to put up with the deluge of complaints about that advertising.

    And if he's right about AOL selling him their membership list and spamming their members (and AOL VP Leonsis' weasel words about "letting members opting out" does nothing to make me think otherwise), all that means is there are two assholes there instead of one. It doesn't give him any moral high ground.

    But at least there's the proposal for a "federal antispam SWAT team". I'd pay good money to see a live video stream of that take-down.

    1. Re:Dang it, there goes my stomach lining... by Strange+Ranger · · Score: 4, Insightful

      >But at least there's the proposal for a "federal antispam SWAT team". I'd pay good money to see a live video stream of that take-down.

      I hate to say it, but I hope the SWAT team proposal fails. How will the Federal SWAT team know who to raid? If they can trace a spammer they can trace activists, dissidents, anybody who might be a terrorist, they can trace anybody. Sure they can do it now to a large degree, but if there's a Federal SWAT team they'll need access to some sort of system right? Something like the Terrorist Information Awareness network or Carnivore but geared specifically towards email and only email. The SWAT team has to be efficient right? Mistakes would make them look real bad.

      The worst thing spammers will do is cause even more loss of privacy, loss of open mail relays, and an increase of government monitoring of email.

      I'm not entirely sure but I think for now I'd rather wear out my delete key a bit more and wait for better technical solutions. The legal solutions are just much too likely to be worse than the problem.

      --

      Operator, give me the number for 911!
    2. Re:Dang it, there goes my stomach lining... by Dark+Paladin · · Score: 5, Interesting

      For me, the key word is "pay for spam".

      One of the reasons why sending advertisements over the Fax is now illegal (without prior authorization, etc, etc, etc) is because it costs *me* money to recieve *your* ad.

      In the case of bulk snail mail, 100% of the costs (if you don't include me physically picking up the mail, looking at it, and tearing the latest "Want a 0% interest credit card that jumps to 30% later?" envelope as cost) is payed by the sender.

      In the case of a fax, *I* pay the paper, toner, etc. So even at $0.01 per ad, if it wasn't stopped I could wind up paying hundreds/thousands a year for the honor of recieving ads.

      In the case of spam email, I believe that the same conditions apply. While I might not pay directly $0.01 per "spam email sent", I am paying by having my web space taken up (for those with ISP's that limit their mail boxes to 5 - 10 MB). And if my business relies on emails, *your* spam interferes with my ability to do work, thereby costing me money.

      Add in that most spammers forge their address, hijack (or at least use without permission "open relays" (who should be closed anyway, yes, I'm looking at you, China, Korea, and any other country who's causing this problem)) other people's mail servers (thereby costing the mail server money they did not want to spend on bandwidth, storage, processor, etc).

      I should hope that the Senate should make a very simple anti-spam plan:

      If you send an unwanted email as an advertisement, you must have a method of truly getting someone off of the list.

      If you sell the email addresses of your clients, you should be required to state to whom they have been sold so you can opt out *before* you get spam mail.

      There should be a "national opt-out" spam list that all spam senders must check before sending a message.

      Violating these agreements, or sending another message after the user has "opted out" is punishable by a $1000 fine per email sent.

    3. Re:Dang it, there goes my stomach lining... by why-is-it · · Score: 5, Insightful

      There should be a "national opt-out" spam list that all spam senders must check before sending a message.

      If such a list existed, you can bet your bottom dollar that every spammer will pay very close attention to it. It would be a list of 100% valid email addresses! Normally they would have to pay for lists of email addresses, and here is one that is free and guaranteed to be accurate.

      The spammer could then fire up the spambox which is conveniently located outside of the US, bounce the spam off of an open relay in the Far East, and it would be business as usual.

      If anyone out there believes that the spammers are honest and trustworthy, they deserve all the viagra, penis/breast enlargement/pr0n spam they get in their inbox...

      --
      *** Where are we going? And what's with this handbasket?
    4. Re:Dang it, there goes my stomach lining... by KC7GR · · Score: 5, Insightful

      Opt-out is a cop-out. Why should ANYone ever be required to opt-out of any E-mail list that they never opted into in the first place?

      You, like many others (thieving parasites like Scelson included), are still overlooking one critical fact:

      The Internet is not now, nor has it ever been, a truly "public" resource. Nobody in the government pays me any subsidy to operate my servers, and I don't know of any ISPs in the U.S. that are receiving any similar subsidies.

      I pay, out of my own pocket, for the electricity and bandwidth that my servers require to work as they do, just as anyone from a mom-n'-pop ISP to a giant like Earthlink pays for the electricity and bandwidth to run theirs.

      In each case, whether you're a single individual or a multinational conglomerate, or anywhere in between, your servers are YOUR PRIVATE PROPERTY, along with the mailboxes on them. You might rent them to others, as ISPs do, but the only guarantee that ANYone has in terms of sending and receiving mail is whatever guarantees are in the contract that gets signed between an Internet provider and their customers.

      When spammers spam, they're violating private property rights. Period. When someone spams me, or one of my other users, they're STEALING from me. When someone spams AOL, they're stealing from AOL and its users. When someone spams ANYone with a 'net-connected system, it is theft of resources. Period.

      I will do whatever it takes to protect my systems from such intrusions. If that means risking the loss or delay of some legitimate E-mail, so be it.

      Apparently, AOL is taking a similar path. That's fine. They have absolute and final authority over their own equipment. Scelson can scream "censorship!" all he wants, but he still has no right to mail to someone else's network if they don't want to receive his (or any other spammer's) crap.

      --

      Bruce Lane, KC7GR,

      Blue Feather Technologies

    5. Re:Dang it, there goes my stomach lining... by Eelis · · Score: 5, Insightful

      This national database could store irreversible hashes of the addresses. This way it would not be possible to extract addresses from the database, while it would still be possible to check whether some address is present in it.

    6. Re:Dang it, there goes my stomach lining... by hymie3 · · Score: 4, Insightful

      If such a list existed, you can bet your bottom dollar that every spammer will pay very close attention to it. It would be a list of 100% valid email addresses! Normally they would have to pay for lists of email addresses, and here is one that is free and guaranteed to be accurate.

      In order for unsolicited *commercial* email (read: spam) to be effective, there *must* be a product/service to purchase and a method to contact the seller.

      Yell at/Fine the seller. They will know which campaign did the spamming. Then fine the spammer.

      In order for the spammer (or the company the spammer is spamming for) to get my money, they have to provide a way for me to contact them. It doesn't matter if they use open relays on Mars, they still, ultimately, have to provide a method for me to contact them.

      That means that a national opt-out list, coupled with a spambounty (or some other kill-the-spammer type legislation) *would* matter, and it would *not* be business as usual.

  3. Pretty simple by Paddyish · · Score: 5, Funny

    while ($AOL)
    { $AOL=shoot_self_in_foot(with_gun);}

  4. Just a few by DreamerFi · · Score: 4, Insightful

    This sort of confirms that most spam is sent by a small group. Take this sucker out, and a massive amount of spam drops off the planet. Do it with enough prejudice, just to make sure nobody takes over the vacancy.

  5. Why do people do this? by blumpy · · Score: 5, Interesting

    Why do people bother with doing crap like this? Just because they can? This guy has the mentality of a script kiddy. Someone find his info and organize a snailmail spam-a-thon.

    1. Re:Why do people do this? by AndroidCat · · Score: 5, Insightful
      Are you going to snailmail him on your dime? Otherwise, you're stealing from magazines, companies with catalogs, etc. Oh sure, it's just pennies here and there, but that's the same logic the spammer uses.

      But okay, the reports of Al Ral getting buried in mail did make me smile. :^)

      --
      One line blog. I hear that they're called Twitters now.
    2. Re:Why do people do this? by realdpk · · Score: 4, Insightful

      The reason people are working so hard to break filters is not to get to Joe Bob SpamAssassin - it's to get through Yahoo! and AOL's spam filters.

      Ask a dozen random AOL and Yahoo! users - I bet not one of them can describe how the antispam features that their mail host uses work.

  6. Slam his customers by st0rmshad0w · · Score: 5, Interesting

    Ok, another spammer, joy, so when are we going to start getting lists of those who HIRE these urchins? I frankly would love to start re-routing all the spam that comes to me BACK to the idiots who hire spammers. Oh, and how about some postal addresses on these spam-buying scumbags too, eh?

  7. Profit on selling customer list? by decesare · · Score: 5, Insightful

    I wonder if anyone inside of AOL has run the numbers to figure out

    • how much money AOL has spent on anti-spam measures, or
    • how many customers AOL has lost due to the overwhelming amount of spam in their inboxes,

    and compared that to the amount of revenue that they get from selling out their customers.

    1. Re:Profit on selling customer list? by enjo13 · · Score: 4, Insightful

      I bet they've profited from this, greatly.

      AOL has the luxury of being both part of the problem (huge customer list) and part of the solution (spam fighting tools). They sell both.

      To the user they offer 'advanced' spam fighting tools. The users see the problem as external to AOL (EVERYONE gets spam after all), and continue to use AOL because they offer at least some kind of protection. This creates, in the users mind, value.

      It is not in AOL's best interest for Spam to simply go away. Much like telemarketing is in the best interests of the phone companies (they CREATE the problem by selling phone numbers, and also sell the tools to fight the callers). AOL merely wants to propogate the perception that they are on 'our' side of the spam battle.

      --
      Turn s60 photos into awesome videos with mScrapbook for all S60 3rd edition phones!
  8. Spamming != bulk mailings by Anonymous Coward · · Score: 5, Insightful

    Scelson tries to make the argument that what he does is no different than other advertisers who send their adverisements through the US mail.

    Unfortunately he, like all other spammers, completely misses the point that the two are not related. When LL Bean sends its catalog to you it costs the company X cents to do so per each catalog.

    When Scelson sends out his 180 emails a day it costs him X cents in total. However, it costs all the ISPs whose bandwidth he and others chew up X dollars per email. Thus, he is offloading the cost of doing business to the people who are receiving the email.

    This reminds me of the old postal system in the UK. In days gone by it was the receiver who had to pay to accept the piece of mail. If they didn't pay the mail was returned. It is only in recent history that the mail system is such that sender pays.

    I wonder if Mr Scelson would be happy if all the advertisers who send him their mailings would tell him he has to pay to get those things whether he wants them or not.

    1. Re:Spamming != bulk mailings by misterpies · · Score: 4, Interesting

      To go wildly offtopic...

      Postage stamps were first introduced in Britain, in 1840. As you say, before then it was the recipient who paid for the mail, not the sender.

      Now in those days that was sensible, since there was no mail system as such anyway. Cash on delivery was the only way you could be fairly sure that the messenger would actually deliver your letter -- since if he didn't, he wouldn't get paid.

      Problem was, people cheated the system. Early hackers, shall we call them, figured out that they didn't need to have their letters actually delivered & paid for to communicate. For instance, if someone wanted the answer to a simple yes-no question (remember, all long-distance communication was by letter then, so this happened a lot), they could set up a code for the response to be communicated by the colour of the envelope. So: messenger arrives with a letter -- but the recipient, having seen the colour of the envelope, says he doesn't want it and refuses to pay.

      Solution: set up a national postal system that people trust, so they're willing to prepay for delivery.

      Of course, 150 years later and US phone companies make the same mistake with cellphones. Charge people to receive calls + caller id -> don't answer, just call back on a land line.

      --
      The author of this post asserts his moral rights.
  9. Nothing Good Is Going To Come Of This by nemski · · Score: 4, Interesting

    Why do I have this knot in my stomach as Congress prepares legislation to stop spam? Remember when they 'deregulated' the cable industry and all our rates went up? I know it is possible to go from bad to worse, but what is after that?

    --
    Some people have a way with words, others not have way.
  10. He's the Norton SystemWorks guy! by sulli · · Score: 4, Interesting
    Watch for the lawsuit, Mr. Scelson:

    Scelson, who said he does not distribute mail containing pornography, said one of his biggest clients sells a package of anti-virus computer software called Norton SystemWorks at cut-rate prices. Officials at Symantec Inc., which makes the Norton software, said in an interview that although they have not seen the package Scelson's client is selling, other similar offers that they have tracked down have proved to be counterfeit.

    I get 1-2 Norton SystemWorks spams a day. If they're from this fucker, let's hope the Symantec people are able to find out where he lives, and sue him into oblivion.

    --

    sulli
    RTFJ.
  11. Scelson, as all spammers, is a liar by gorbachev · · Score: 4, Interesting

    There is NO way he bought the AOL address information from AOL.

    One thing to keep in mind when talking with spammers is that they always lie. They lie to themselves ("everything I do is legal", "I am forced to hijack open proxies") and they lie to everyone else ("Here's the information you requested").

    The career spammers are, indeed, bold enough to even lie to the US Government, face-to-face. Too bad the US Government is usually totally cluefree when it comes to the spam problem, so these conmen get away with lieing to senators.

    Proletariat of the world, unite to kill spammers. Remember to shoot knees first, so that they can't run away while you slowly torture them to death

    --
    In Soviet Russia, I ruled you
    1. Re:Scelson, as all spammers, is a liar by leviramsey · · Score: 5, Insightful

      There are a few possibilities:

      • AOL sold the member list, and Leonsis affirms: major PR disaster
      • AOL sold the member list, and Leonsis denies: Leonsis is risking perjury and contempt of Congress charges (both of which are jailable offenses)
      • AOL did not sell the member list, and Leonsis affirms: perjury and PR disaster
      • AOL did not sell the member list, and Leonsis denies: status quo ante
      • Leonsis neither affirms nor denies: status quo ante

      There's no reason Leonsis would know every dealing that AOL does (especially those before he rose to this level); if he affirms, he's fucked. If he denies, the best he can hope for is status quo ante if he's right; if he's wrong, he's fucked. So if he answers, 4 things can happen, and 3 of them are bad.

    2. Re:Scelson, as all spammers, is a liar by LordKane · · Score: 4, Informative
      Now I KNOW the /. crowd is a haven for anti-spam vigilantes. You spout total anti-spam crap and get modded up for it like mad. Your making statements as if they are defined fact and there are no two ways about it. You show you know very little about spam, or even AOL for that matter.

      Let's start with AOL. You say there is no way AOL sells their info. Well, I know 3 local businesses here who bought AOL member addresses from AOL, buying only the sections of our local town even. AOL will not only sell you their members, they will offer targeted selections.
      Now, I doubt AOL puts this on their site next to their member sign-up, but from what I have seen, they sure do sell your addresses. In fact, I'll bet you did not know AOL tracks where their users go on the web for marketing purposes. Yup, if you visit a mortgage site, they immediately sell your info to their list of mortgage lead buyers. By morning, you will have several offers for mortgages in your inbox. And this happens for all kinds of businesses. I mean, they control your email and your net connection, why not market accordingly. I'm sure a few of you AOL users have experienced this before, or perhaps could try it?

      Now, as far as all spammers being liars, I see you are just one of the anti-spam flock, spouting propaganda. It's disappointing no one on /. actually reads the articles, or can remembers ones from a few weeks ago. You might remember a bit on Spamhaus showing the top 200 spammers causing 90% of the spam. Well, I know 2 of those people. I know one because they live 3 towns over from me, running a small PC shop in Halifax, MA. If you email me, I'll send you their business address, directions, even their home info. :) The other one I met because of them. I can tell you they are unscrupulous, a bit dumb, and have no troubles telling lies. The ones I know are total dicks. The issue is the remaining 90% of small time spammers, some of whom who are actually ok guys.
      Granted, they should be paying for their use of email, yata-yata. Case in point, the 3 shop owners I know locally who bought those bits of AOL's lists. They offer honest products, they try and target locally, so they don't send people who can't possibly use their service an ad, and they honor remove requests. They even offer their shop info in the email so they can be contacted directly. The system could be better, but at least they try. They do not fit your bill of the evil spammer. Some really are pretty bad. Some are not. Your sweeping statements of ignorance and promises of murder at the end are totally unwarranted.

      I will be sure to remember to offer to murder you next time I disagree with the way you do business. How you got modded +5 for this steaming pile of flaimbait is beyond me, but I'll certainly burn some karma to put out an opposing statement. I guess that is what public forums are all about. ::drinks a little more distilled Usenet post evil:: Cheers.

      --
      "Victims, aren't we all?"
  12. Return to sender! by st0rmshad0w · · Score: 4, Interesting

    I think I have it. If we get the spammer's postal address, and the postal address of those who hired him, maybe we should just print out all the spam we get and sent it to the one who hired him postage due. :)

    As an added bonus use the spammer's postal address as the return address.

  13. Lots of good info here... by johannesg · · Score: 5, Interesting
    "People still buy this stuff," he said, claiming that his clients get a response rate to his e-mail of 1 to 2 percent.

    Let's say 10 million emails per hour (lowest), 1% response rate (lowest), that's 100,000 responses per hour! That means that over the course of a year, we are talking about 876 million responses. Divide that by the 165.75 million internet users in the US, and we learn that each and every one of you respond to him 5 times per year!

    Well, maybe he spams the entire world. I have no idea how many internet users there are in the world, but let's say it is something like one billion. That means everyone responds to him almost yearly! Amazing! Now I only have one question: those responses, are they sales or deaththreats?

    1. Re:Lots of good info here... by vidarh · · Score: 5, Insightful
      1% response rate is extremely unlikely. Normal direct (snail) mail tend to get response rates of 1-2%. Double opt in (where a verification message have been sent, and the user have responded to it to confirm they want to sign up) e-mail campaigns can easily get as low as 1 in 10.000 or 1 in 100.000 if the list is unqualified and not in the right target group. Spam would likely be much worse than that. So he's probably lying through his teeth.

      Of course, as you suggest, he could be counting death threats as responses as well :-)

      Still, with todays bandwidth prices, and an estimate of 10kb per e-mail, if he's sending 10 million messages an hour, he'd be sending around 100GB an hour at around $50 an hour (likely less, given the volumes and since it's mail traffic where he doesn't need to pay a premium for low latency connectivity). A product with a reasonable markup and he might be able to recoup the cost of those 10 million messages with a single sale, possibly even making a nice profit.

      And that's why asking people not to buy from spammers won't be enough to get them out of business.

  14. Another bad Slashdot analogy by JSkills · · Score: 4, Interesting
    Yes - many people use analogies to make their point on Slashdot - so here's mine.

    People need to guard their email addresses in the same way they practice safe sex. Don't go sticking your email address just any old place ...

    Ok, that was bad. The exceptions are cases where your ISP screws you and sells your name (like those sorry AOL customers had happen to them) or people who use brute force address guessing algorithms.

    Although I think the legislation being considered is a good first step --

    The Burns-Wyden bill would make it illegal for bulk mailers to forge their sending location, have deceptive subject lines or prevent users from removing their names from e-mail lists. Owners of networks would retain the ability to block mail, and the legislation gives Internet providers legal standing to hunt down and sue spammers.

    The committee also heard from Sen. Charles E. Schumer (D-N.Y.), who advocates a nationwide do-not-spam registry similar to a newly created do-not-call telemarketing list, plus an international treaty on spam.

    Nothing really beats good filtering. I put together a server side filtering process using a Mail::Audit. I support several end users who can administrate their mail rules (e.g. block if subject has "viagra" or if sender is spamboy@jizzmop.com, etc.) using a web based interface and MySQL back-end. People can share rules as well. It's working pretty well for everyone. Additionally, Mail::Audit allows you to tap into the RBL which essentially will give you an "unlisted number" - only those you have expilicity granted permission to recieve from can reach you. Sounds extreme, but I get ZERO spam.

    1. Re:Another bad Slashdot analogy by Exedore · · Score: 5, Funny

      People need to guard their email addresses in the same way they practice safe sex. Don't go sticking your email address just any old place ...

      Special offer for JSkillsWui$d3g6Yert! Email address too small/not performing to expectations? Now you can enlarge your email address the natural way! 100% safe and effective! Get the email address performance you've always dreamed of having!

      --

      I take drugs seriously.

  15. SPAMHAUS Record on Scelson by tbmaddux · · Score: 5, Informative

    ... is here. He must not be doing all that well if he can't scrape together the dough to get his fat ass out of Slidell, Louisiana, a town I had the misfortune of driving through a year ago and whose only redeeming feature is the Lake Ponchartrain bridge/causeway leading out of it and to New Orleans.

    --
    Can't you see that everyone is buying station wagons?
  16. Where's the personal info, it's been 20 minutes. by Ravensign · · Score: 5, Funny

    Lol.

    This article is 20 minutes old, I am suprised his home address, phone number, ssn, shoe size and EQ account info aren't already posted.

    --
    "Sig free in '03!"
  17. Here's an idea. by Greg@RageNet · · Score: 4, Interesting

    Here's a proposal, as it seems like the world is moving closer to 'whitelist' (reject by default) method of spam combatantcy. Perhaps there should be a global whitelist set up, where a user signs up, and must verify their mail address, then the mail address is MD5 hashed and stored in a database. Recipients recieve an email from this sender they simply hash the from address and check to see if the hash exists in the database. If it's present the mail is accepted, if not, rejected. Solves the problem of invalid from addresses always used in spam, as well as solving the problem of preventing data-mining of such a 'whitelist' database by spammers (as it contains only checksums).. And it solves the problem of being able to recieve messages from people you haven't personally explicitly whitelisted; ie. old friends from highschool, aquantances with new email addresses, etc..

    Whaddya think?

    -- Greg

    --
    Slashdot, would a spell-checker for posting be too much to ask? It's not rocket science!
  18. forging sender address by MORTAR_COMBAT! · · Score: 5, Insightful

    Why isn't this the same crime as handing someone an ID card which says you are someone you are not?

    He claims that he "has no choice but to resort to forging the sender information in his bulk e-mail so he can be anonymous".

    Isn't that a bit like saying that when I was 19, I had no choice but to resort to forging my driver's license so I could buy beer?

    --
    MORTAR COMBAT!
  19. Anonymous my ass by YrWrstNtmr · · Score: 5, Insightful

    he has no choice but to resort to forging the sender information in his bulk e-mail so he can be anonymous and maintain his connection to the Internet.

    Is that like bank robbers being forced to don a mask so they can remain anonymous and maintain their 'business operations'?

    I've had one of my email addresses used as a reply to: for quite a few spams. A real PITA. Not only did that address get the standard spam, it get bounces from nonexistent recipients. Sometimes in the hundreds per day, as the result of dictionary attacks on various ISP's. On top of that, you get the indignant replies from pissed off people.

    Blatant forgeries in commercial email headers should be made illegal.

  20. HERE HE IS, the bastard by Anonymous Coward · · Score: 5, Informative

    He has two addresses, (assuming these are both him).
    These were the only Ronald Scelson's in Louisiana and considering they are both in the same city I would say it's fairly certain.

    Ronald Scelson
    211 Martin Lane
    Slidell, LA 70458

    Ronald R Scelson
    1711 W Hall Ave
    Slidell, LA 70460

    Would the /. community like to show this guy what we consider spam?

    1. Re:HERE HE IS, the bastard by wiggys · · Score: 5, Informative
      The problem is you have to be REALLY sure this is him. What if an innocent person who shares the same name is targetted.

      That's the problem with vigilanti-style justice - it requires an assumption of guilt, and the victim rarely gets an opportunity to reply until it's too late.

      --

      Sorry, but my karma just ran over your dogma.

  21. Hell Freezes Over by Tackhead · · Score: 5, Funny
    > "I'm probably the most hated person in this room," said an unapologetic Scelson,

    and several dimensions away, Satan scraped the icicles from his beard and once more begged God to turn the heat back up. "Okay, so a spammer told the truth, but it only happened once, and it was an accident, it's not my fault, can I please have some frickin' heat down here already?!?!"

  22. Re:Where's the personal info, it's been 20 minutes by jenkin+sear · · Score: 5, Informative

    According to Spamhaus:

    (http://www.spamhaus.org/rokso/search.lasso?evid en cefile=1070:

    ABUSERS: Ronald R. Scelson
    [Birthdate: 12-11-71 or 72, New Orleans, LA, married]
    avsrscelson@aol.com / cajunspam@aol.com / avsrscelson2000@yahoo.com / dff@yahoo.com
    Amy Hoolahan [wife/sister?]
    43 CYPRESS MEADOWS LOOP
    SLIDELL, LA 70460 US
    Home: (504) 646-2225
    Work: 504-649-6248

    PHONE NUMBERS: 888-365-0000 ext. 1648 / 800-242-0363 EXT. 2427
    888-724-3108 x5413752
    504 781 8117 / 504-957-1037 / 504-847-1232 / 504-649-7751
    504-781-6615 / 504-649-6248 / 504-781-6655 / 504-831-1595
    504-646-2225 / 504-641-0876
    FAX: 504 641 0810 / 504-456-0995 / 504-781-6615

    MORE INFO: Connelly sues to keep spamming:
    http://www.frc.org/legal/lf99j05.html
    http://www.freedomforum.org/speech/1999/10/20laspa m.asp
    http://www.mediainst.org/digest/fall1999/pa ge8.htm l
    Wife Florence Fox sued for Nu-Skin Pyramid Scheme:
    http://www.attorneygeneral.gov/press2/mon ths/Feb98 /feb23pr1.htm

    Me, I'm thinking some letters of marque and reprisal are the answer...

    --
    What a strange bird is the pelican, his beak can hold more than his belly can.
  23. Scelson is right by abde · · Score: 4, Insightful
    Scelson said he supports anti-spam legislation. But while committee members were clearly intrigued by his story, they gave little weight to his proposed solution: Pass a tough spam law, but then prevent any Internet provider from blocking e-mail from bulk marketers that abide by the law.

    The Burns-Wyden bill would make it illegal for bulk mailers to forge their sending location, have deceptive subject lines or prevent users from removing their names from e-mail lists. Owners of networks would retain the ability to block mail, and the legislation gives Internet providers legal standing to hunt down and sue spammers.


    (emphasis mine) I think it's a brilliant suggestion. If the Burns-Wyden bill is passed, then I can easily filter my mail to stop spam I don't want to see. I don't think that my ISPs should be blocking email that may be spam but follows these rules. The filters in Eudora and Outlook Express are powerful enough to stop all spam I am not interested in receiving if I know for a fact that the forged header problem vanishes. I think it's a great compromise.
    --
    Don't blame me - I voted for Howard Dean. http://dean2004.blogspot.com
  24. Spam is not good business by Elkman · · Score: 5, Insightful

    If you want to get your slogan and company name out there fast, it makes sense to use the Internet and email systems.

    If you want to attract and retain a loyal customer base, it absolutely doesn't make sense to use spam or other annoying methods of advertising on the Internet.

    As an example: I work for a company that owns one of the major online travel sites. A few weeks ago, we had an all-company conference call, and one of the members in my group pointed out that another online travel site had recently stepped up its advertising via popup ads on web sites. He asked why we weren't annoying the consumer with popup ads. The leader of the call replied, "I think you just answered your own question." He explained that while popup ads may be effective, they don't make any friends among consumers and they don't build loyalty.

    If popup ads have such a negative impression, don't you think unsolicited commercial E-mail has a much more negative impression on the Internet population? Here's a hint: The spammers who sell Viagra (r), Viagra substitutes, penis extension pills, mortgages, and other spamvertised products almost never reveal their real business name. They hide behind throwaway e-mail addresses and make themselves untraceable to their audience.

    Would a business concerned with consumer loyalty really have to hide themselves? My local grocery store doesn't have to hide from me. Neither does Target, Borders, Best Buy, or any number of bricks-and-mortar retailers. Amazon.com doesn't have to hide from me, nor do any of the online travel sites. Yet the spammers pushing penis pills don't dare reveal who they are, where they work, how I can contact them, or anything traceable.

    I would rather trust a spammer than a lazy computer programmer to get a job done, that's for sure. It's not about being nice, it's about being a hard worker. Stupid isn't forever, but lazy is.

    I think you're trolling here, but in case you aren't: That "hard work" relies on hijacking other people's resources. It relies on deception and lies to push a product to people.

    (Disclaimer: This is not the opinion of my employer, of course.)

  25. Making a Statement by nuggz · · Score: 4, Insightful

    An officer of a company should not make a statement without ensuring it is correct. Or taking reasonable means to ensure it is correct.
    When a specific claim is made, like this there are a few options.
    1. No statement at this time, or no comment.
    2. Suggest that this didn't happen. This is against our standard policies.
    3. Investigate the statement, and then comment on it's accuracy.
    4. Say we did no such thing, without checking. This is reckless, and a responsible person should not do so.

    I know it sounds weaselish, but you MUST not make a statement when you do not have the information to justify it. You can get in a lot of trouble for lying.

  26. client filtering is just wrong approach by MORTAR_COMBAT! · · Score: 5, Insightful

    Because most of the actual monetary cost of sending the spam has already been incurred by the time you filter at the client. The message has already been transmitted from client to server to server to server to client over the internet, consuming bandwidth. It has already occupied disk space. Even the end-of-the-server-chain, pre-client filters like SpamAssassin only alleviate the last link in that bandwidth-bonanza (to-client).

    That spam email should never be sent, period. It should not ever proceed across the internet whose bandwidth is being paid for by millions of users, providing benefit to the sender. It should never touch the hard disk of a server.

    In addition, it simply takes too much sophistication for the VAST majority of email users to properly set up filters. A simple [ADV*] -> Trash filter would delete some email that quite honestly some users want -- special coupons from Amazon.com for repeat customers, for example. Those emails would by (proposed) law have to have the [ADV] tag on them. So then you add another filter above the Trash filter to allow ADV from Amazon through... and so on, and so forth.

    Pretty soon the hassle of organising your filters has exceeded the hassle of having to just click 'delete' to spam (for the average email user). I can easily enter a new expression in my .procmailrc to deal with all kinds of situations, but Joe Schmoe email user shouldn't have to learn complex regular expressions.

    --
    MORTAR COMBAT!
  27. Re:FYI incaseof /. fx by Turing+Machine · · Score: 5, Funny

    "I'm probably the most hated person in this room," said an unapologetic Scelson

    An impressive claim, considering that he was testifying before Congress.

  28. Re:FYI incaseof /. fx by DogIsMyCoprocessor · · Score: 5, Insightful

    Can we stop with the cut-and-paste of text from the WaPo site? The site seems to be extremely well architected to handle high demand, and has never been Slashdotted as far as I know.

    --

    "And this is my boy, Sherman. Speak, Sherman." "Hello." "Good boy."

  29. 8th grade education ... by The+AtomicPunk · · Score: 5, Insightful

    I guess that explains statements like the following, that display his keen insight into our system of government:

    "But carriers should be held accountable when they submit to anti-spam groups. Terminating services to companies' such as my own without any legal reason to do so is not the democracy that we should all be living."

    Jackass, if you're reading:

    1) This is not a democracy. We're a democratic republic. There's a big difference.

    2) Forcing someone else to provide you a service is neither freedom, nor related to a democracy. In fact, that would be contrary to freedom.

    3) Claiming you're FORCED to forge email addresses because of "bullying tactics" is akin to claiming you were forced to break into my house and dump junk mail on my desk because I refused delivery.

    Apparently you think America is all about you, and that you somehow have a level of freedom that compels others to act according to your wishes.

    Rot in hell, dickhead.

  30. Even worse than being spammed by cmpalmer · · Score: 4, Interesting

    I've grown used to logging on in the morning, deleting 20-50 spams that made it through my ISP's filter, then reading the 1-10 valid messages.

    Until a few days ago...

    Then I started getting bounced messages showing up in the inbox. First a dozen or so, and now 300+ per day. Some unscrupulous bastard put my e-mail address as the return address on those damned "Penis enlargement" spams and sent out a coupla hundred thousand. All have a different name ("Buffy", "Steve", "Frank", etc.), but all with my e-mail address.

    I've had that address for nearly 10 years, which is the reason I put up with spam on it, but now I'm going to have to kill it all because some moron (the messages originated in China according the to headers) picked my name at random to hide behind.

    --
    -- stream of did I lock the front door consciousness
  31. New Distributed Computing Project : DDoS spammers by androse · · Score: 5, Insightful
    Or more accuratly, DDoS the spammers clients.

    I have been looking at the source of my spam lately, and, although the email addresses are always forged, the body of the messages nearly always point to some website.

    What we should do is have a way to automatize the slashdotting of these sites. The resource cost for every recepient is very small, but is very high for the target web site. If the site is run directly by the spammer, then that's great (he get's to pay the bandwidth bill). If it is run by the spammer's client, then that's even better. If it is hosted on a free non-commercial facility, it will wake them up and will make them find a way to make their users accountable.

    So how to do this in a very user-friendly and convenient way ?
    Make a distributed-computing application, very light-weight, that runs on every platform. You should be able to set the maximum bandwidth you want to use (the default could be very low, like 5kbps), when it should start and stop, etc.The app will go and fetch a list of URLs of images or HTML pages on the target servers, and start downloading them to /dev/null. The app should have a funny user interface, that let's you know when a target host becomes unavailable (victory ! another one bites the dust !), etc. The downloadable list of target hosts should be maintained by a trusted source (it could be GPG signed for example), maybe mailed to you though a MixMaster remailer to avoid spammer suing the originator.

    This could make all the Spam issue a lot more fun !

  32. DMCA by Zed2K · · Score: 5, Interesting

    "He boasted that in 24 hours he could crack sophisticated software filters designed to block spam."

    So isn't that in violation of the DMCA? Or am I stretching it? If he said he could get around them then its different but he specifically said he could crack them.

  33. Ronnie Scelson's Info, Courtesy of ROKSO by Anonymous Coward · · Score: 5, Informative

    The Registry of Known Spammers has his contact information, including emails, snail address, toll free phone numbers, etc. Lameness filter prevents posting the whole thing, but here's a peak at it.

    ABUSERS: Ronald R. Scelson
    [Birthdate: 12-11-71 or 72, New Orleans, LA, married]
    avsrscelson@aol.com / cajunspam@aol.com / avsrscelson2000@yahoo.com / dff@yahoo.com
    Amy Hoolahan [wife/sister?]
    43 CYPRESS MEADOWS LOOP
    SLIDELL, LA 70460 US
    Home: (504) 646-2225
    Work: 504-649-6248

    PHONE NUMBERS: 888-365-0000 ext. 1648 / 800-242-0363 EXT. 2427
    888-724-3108 x5413752
    504 781 8117 / 504-957-1037 / 504-847-1232 / 504-649-7751
    504-781-6615 / 504-649-6248 / 504-781-6655 / 504-831-1595
    504-646-2225 / 504-641-0876
    FAX: 504 641 0810 / 504-456-0995 / 504-781-6615

    MORE INFO: Connelly sues to keep spamming:
    http://www.frc.org/legal/lf99j05.html
    http://www.freedomforum.org/speech/1999/10/20laspa m.asp
    http://www.mediainst.org/digest/fall1999/pa ge8.htm l
    Wife Florence Fox sued for Nu-Skin Pyramid Scheme:
    http://www.attorneygeneral.gov/press2/mon ths/Feb98 /feb23pr1.htm

    AKA: RONALD SCELSON (NETBLK-FON-106771046442576)
    43 CYPRESS MEADOWS LOOP
    SLIDELL, LA 70460 US
    SCELSON, RONALD (RS928-ARIN) RSCELSON@AOL.COM
    5049571037

  34. 8th Grade Dropout? by hendridm · · Score: 5, Funny

    It shows

    And all this time I thought the bad english in the spam I get originated from Asia.

  35. Blacklist AOL on your mailserver!!! by Medievalist · · Score: 4, Interesting

    After dozens of attempts to get AOL to implement the most rudimentary outgoing filters on their Email system, and getting ZERO response, I have regretfully informed our user base that we will no longer accept any Email emanating from any machine with an AOL.COM IP address.

    They are breaking the rules of the Internet (see: SMTP RFCs) by improperly implementing postmaster@aol.com (see rfc-ignorant .orgfor details) and their mail relays have sent hundreds of viruses into my domain.

    I have asked all AOL users at my site who wish to continue emailing their home addresses from work to get a new service provider and given them two months to do so. I have recommended several small local ISPs to them that I know provide good service and never allow easily detected virii like Yaha, Klez and SoBig to transit their mail hubs.

    We, fellow slashdotters, can use our enormous power as administrators of email hubs to get AOL's attention - since it seems more civilized methods are useless. The social contract of the Internet is simple; play by the rules (i.e. implement the required RFCs) or you are not part of the community.

  36. Re:are you kidding? by RazzleFrog · · Score: 5, Informative

    Junk mail is usually paid for using bulk pricing systems, subsidized by the rest of the postal audience.

    I'm afraid you have it backwards. Bulk mail, even at its reduced rate, is what allows you to send a letter at 39 cents. Bulk mail is presorted so as to make processing time for the post office almost nothing. Your letter with sloppily written address actually takes time to be read and sorted.

    ALso, the USPS is a government sponsored monopoly but it doesn't receive any tax payer dollars. It is self funding.

    Finally, large glossy catalogs are very expensive for companies and they are not typically sent to people who haven't shopped in the store before or requested the catalog specifically. They therefore are not in the same category as snail spam.

  37. Re:are you kidding? by DunbarTheInept · · Score: 4, Interesting


    ALso, the USPS is a government sponsored monopoly but it doesn't receive any tax payer dollars. It is self funding.

    Not only that, but it's even older than the government. The post office was concieved under the Articles of Confederation, before the current government under the Constitution. And not only did it pay for itself, but it was once the primary source of revenue to fund the government.

    --

    Don't label something "offtopic" unless you know the topic well enough to tell what's on topic.

  38. has everyone missed the point? by maxpublic · · Score: 5, Interesting

    Do you honestly think Congress gives a good goddamn about spam? Congressman don't have to deal with this shit; their lackeys do.

    This issue isn't about killing spam - it's about using spam as an 'issue' to kill anonymity online. It's yet another attempt by the government to throttle what remains of our privacy, and spam is a very convenient complaint to base this sort of legislation on.

    Thanks but no thanks. I'll take the spam in exchange for privacy. My privacy is far more important than any government attempt to curb unwanted email, especially when it's just a ruse to eliminate what few rights I have left.

    Max

    --
    My god carries a hammer. Your god died nailed to a tree. Any questions?