Tycoon Talk
Become a Big fish!
The number 1 forum for online business!
Post topics, ask questions, share your knowledge.
Tycoon Talk is part of Freelancer.com - find skilled workers online at a fraction of the cost.

Web Hosting Forum


You are currently viewing our Web Hosting Forum as a guest. Please register to participate.
Login



Reply
Reverse dictionary harvest attack question
Old 02-15-2007, 11:16 AM Reverse dictionary harvest attack question
ADAM Web Design's Avatar
Canadastaninianite

Posts: 5,938
Name: Adam for web page design, not program
Location: Toronto, Ontario, Canada
Trades: 0
Here's a bit of a strange one:

I've got a client who has an email address that acts as the catch-all for their domain. She noticed that she had 632 emails within a 10-minute span late last night that were "undeliverable."

What I noticed about them is that they all came from things like (some random dictionary word)@(domain name). So they weren't anything anyone in the office would have used. So it's like a dictionary harvest attack, only the other way around.

The question I have is: is there any way to force users of a domain name to authenticate to it on the server side (the site's hosted on an NT server...I believe it's a Windows 2000 server, but I'm not sure because it's not my server) before emails go out? Thanks.
__________________

Please login or register to view this content. Registration is FREE
|
Please login or register to view this content. Registration is FREE
(my blog)


Please login or register to view this content. Registration is FREE
(with proof)
ADAM Web Design is offline
Reply With Quote
View Public Profile Visit ADAM Web Design's homepage!
 
 
Register now for full access!
Old 02-15-2007, 02:39 PM Re: Reverse dictionary harvest attack question
mgraphic's Avatar
Truth Seeker

Latest Blog Post:
JAMISONTUNES
Posts: 2,898
Name: Keith Marshall
Location: Connecticut
Trades: 0
There is a big chance that it was sent from another SMTP so authintication wouldn't work in that case.
__________________

<mgraphic /> - I don't have a solution but I admire the problem.
mgraphic is online now
Reply With Quote
View Public Profile
 
Old 02-15-2007, 09:44 PM Re: Reverse dictionary harvest attack question
Learning Newbie's Avatar
Defies a Status

Latest Blog Post:
Astounding Republican Paranoia
Posts: 5,662
Name: John Alexander
Trades: 0
I'm with the Bill Gates fan here.

It's probably spam coming from the outside world. I get a lot of spam saying an email I had tried to send is undeliverable, only, I never tried to send that email. I really don't know what the point is, because it didn't have any viagra. Maybe spammers are sending out blankets and seeing which ones are returned undeliverable, and the ones that aren't they can assume are valid emails?
Learning Newbie is offline
Reply With Quote
View Public Profile
 
Old 02-16-2007, 01:12 AM Re: Reverse dictionary harvest attack question
ADAM Web Design's Avatar
Canadastaninianite

Posts: 5,938
Name: Adam for web page design, not program
Location: Toronto, Ontario, Canada
Trades: 0
That's just it, Learning Newbie. In order for a spammer to see that they're undeliverable, the spammer would have to have a return address that could check for the bounce-back email. That's why this really doesn't make a lot of sense to me.

Anyway, I kinda figured this was the answer. I just wasn't sure if there was any method of authentication that would allow for this sort of tracking.

Ah well...what can you do? Stupid email.

Thanks, guys.
__________________

Please login or register to view this content. Registration is FREE
|
Please login or register to view this content. Registration is FREE
(my blog)


Please login or register to view this content. Registration is FREE
(with proof)
ADAM Web Design is offline
Reply With Quote
View Public Profile Visit ADAM Web Design's homepage!
 
Reply     « Reply to Reverse dictionary harvest attack question
 

Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are Off
Pingbacks are Off
Refbacks are Off





   
RSS Feed  Feeds: RSS   JS   XML
RSS Feed  Feeds for this forum: RSS   JS   XML



Page generated in 0.19470 seconds with 12 queries