<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>The Tao of E-Mail &#187; ip reputations</title>
	<atom:link href="http://www.tao-of-email.com/tag/ip-reputations/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.tao-of-email.com</link>
	<description>Following the Way of e-mail.</description>
	<lastBuildDate>Wed, 01 Jul 2009 15:00:35 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.8.6</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>Valentine’s Day Spammers</title>
		<link>http://www.tao-of-email.com/2009/02/13/valentine%e2%80%99s-day-spammers/</link>
		<comments>http://www.tao-of-email.com/2009/02/13/valentine%e2%80%99s-day-spammers/#comments</comments>
		<pubDate>Fri, 13 Feb 2009 16:27:30 +0000</pubDate>
		<dc:creator>tgolan</dc:creator>
				<category><![CDATA[e-mail]]></category>
		<category><![CDATA[ip reputations]]></category>

		<guid isPermaLink="false">http://www.tao-of-email.com/?p=142</guid>
		<description><![CDATA[I came across this article last night, “Botnet Operators Gearing Up for Valentine&#8217;s Day Spammers try to play Cupid, with a dark twist” by Richard Adhikari with Internet News (http://www.internetnews.com/security/article.php/3802331) and can’t help but think there is nothing new here.
The “bad guys” are well funded and have developed sophisticated tool-sets to evade detection by content [...]]]></description>
			<content:encoded><![CDATA[<p>I came across this article last night, “<a href="http://www.internetnews.com/security/article.php/3802331" target="_blank">Botnet Operators Gearing Up for Valentine&#8217;s Day Spammers try to play Cupid, with a dark twist</a>” by Richard Adhikari with Internet News (http://www.internetnews.com/security/article.php/3802331) and can’t help but think there is nothing new here.</p>
<p>The “bad guys” are well funded and have developed sophisticated tool-sets to evade detection by content driven and IP reputation based security systems.</p>
<p>While I’m not extremely familiar with the term “fast flux DNS,” this is a perfect illustration of why DNS blacklisting (a.k.a. IP reputations) is such a waste of time as currently implemented by folks like Websence, etc. The “bad guys” know that as long as they are competing against reactive technologies like content filters and DNS blacklists they will ALWAYS be ahead of the curve.</p>



Share and Enjoy:


	<a rel="nofollow" target="_blank" href="http://digg.com/submit?phase=2&amp;url=http%3A%2F%2Fwww.tao-of-email.com%2F2009%2F02%2F13%2Fvalentine%25e2%2580%2599s-day-spammers%2F&amp;title=Valentine%E2%80%99s%20Day%20Spammers" title="Digg"><img src="http://www.tao-of-email.com/wp-content/plugins/sociable/images/digg.png" title="Digg" alt="Digg" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://sphinn.com/submit.php?url=http%3A%2F%2Fwww.tao-of-email.com%2F2009%2F02%2F13%2Fvalentine%25e2%2580%2599s-day-spammers%2F&amp;title=Valentine%E2%80%99s%20Day%20Spammers" title="Sphinn"><img src="http://www.tao-of-email.com/wp-content/plugins/sociable/images/sphinn.png" title="Sphinn" alt="Sphinn" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://del.icio.us/post?url=http%3A%2F%2Fwww.tao-of-email.com%2F2009%2F02%2F13%2Fvalentine%25e2%2580%2599s-day-spammers%2F&amp;title=Valentine%E2%80%99s%20Day%20Spammers" title="del.icio.us"><img src="http://www.tao-of-email.com/wp-content/plugins/sociable/images/delicious.png" title="del.icio.us" alt="del.icio.us" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://www.facebook.com/share.php?u=http%3A%2F%2Fwww.tao-of-email.com%2F2009%2F02%2F13%2Fvalentine%25e2%2580%2599s-day-spammers%2F&amp;t=Valentine%E2%80%99s%20Day%20Spammers" title="Facebook"><img src="http://www.tao-of-email.com/wp-content/plugins/sociable/images/facebook.png" title="Facebook" alt="Facebook" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://www.mixx.com/submit?page_url=http%3A%2F%2Fwww.tao-of-email.com%2F2009%2F02%2F13%2Fvalentine%25e2%2580%2599s-day-spammers%2F&amp;title=Valentine%E2%80%99s%20Day%20Spammers" title="Mixx"><img src="http://www.tao-of-email.com/wp-content/plugins/sociable/images/mixx.png" title="Mixx" alt="Mixx" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://www.google.com/bookmarks/mark?op=edit&amp;bkmk=http%3A%2F%2Fwww.tao-of-email.com%2F2009%2F02%2F13%2Fvalentine%25e2%2580%2599s-day-spammers%2F&amp;title=Valentine%E2%80%99s%20Day%20Spammers" title="Google"><img src="http://www.tao-of-email.com/wp-content/plugins/sociable/images/googlebookmark.png" title="Google" alt="Google" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://www.linkedin.com/shareArticle?mini=true&amp;url=http%3A%2F%2Fwww.tao-of-email.com%2F2009%2F02%2F13%2Fvalentine%25e2%2580%2599s-day-spammers%2F&amp;title=Valentine%E2%80%99s%20Day%20Spammers&amp;source=The+Tao+of+E-Mail+Following+the+Way+of+e-mail.&amp;summary=I%20came%20across%20this%20article%20last%20night%2C%20%E2%80%9CBotnet%20Operators%20Gearing%20Up%20for%20Valentine%27s%20Day%20Spammers%20try%20to%20play%20Cupid%2C%20with%20a%20dark%20twist%E2%80%9D%20by%20Richard%20Adhikari%20with%20Internet%20News%20%28http%3A%2F%2Fwww.internetnews.com%2Fsecurity%2Farticle.php%2F3802331%29%20and%20can%E2%80%99t%20h" title="LinkedIn"><img src="http://www.tao-of-email.com/wp-content/plugins/sociable/images/linkedin.png" title="LinkedIn" alt="LinkedIn" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://slashdot.org/bookmark.pl?title=Valentine%E2%80%99s%20Day%20Spammers&amp;url=http%3A%2F%2Fwww.tao-of-email.com%2F2009%2F02%2F13%2Fvalentine%25e2%2580%2599s-day-spammers%2F" title="Slashdot"><img src="http://www.tao-of-email.com/wp-content/plugins/sociable/images/slashdot.png" title="Slashdot" alt="Slashdot" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://www.stumbleupon.com/submit?url=http%3A%2F%2Fwww.tao-of-email.com%2F2009%2F02%2F13%2Fvalentine%25e2%2580%2599s-day-spammers%2F&amp;title=Valentine%E2%80%99s%20Day%20Spammers" title="StumbleUpon"><img src="http://www.tao-of-email.com/wp-content/plugins/sociable/images/stumbleupon.png" title="StumbleUpon" alt="StumbleUpon" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://technorati.com/faves?add=http%3A%2F%2Fwww.tao-of-email.com%2F2009%2F02%2F13%2Fvalentine%25e2%2580%2599s-day-spammers%2F" title="Technorati"><img src="http://www.tao-of-email.com/wp-content/plugins/sociable/images/technorati.png" title="Technorati" alt="Technorati" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://twitter.com/home?status=http%3A%2F%2Fwww.tao-of-email.com%2F2009%2F02%2F13%2Fvalentine%25e2%2580%2599s-day-spammers%2F" title="TwitThis"><img src="http://www.tao-of-email.com/wp-content/plugins/sociable/images/twitter.png" title="TwitThis" alt="TwitThis" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://ping.fm/ref/?link=http%3A%2F%2Fwww.tao-of-email.com%2F2009%2F02%2F13%2Fvalentine%25e2%2580%2599s-day-spammers%2F&amp;title=Valentine%E2%80%99s%20Day%20Spammers" title="Ping.fm"><img src="http://www.tao-of-email.com/wp-content/plugins/sociable/images/ping.png" title="Ping.fm" alt="Ping.fm" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="https://favorites.live.com/quickadd.aspx?marklet=1&amp;url=http%3A%2F%2Fwww.tao-of-email.com%2F2009%2F02%2F13%2Fvalentine%25e2%2580%2599s-day-spammers%2F&amp;title=Valentine%E2%80%99s%20Day%20Spammers" title="Live"><img src="http://www.tao-of-email.com/wp-content/plugins/sociable/images/live.png" title="Live" alt="Live" class="sociable-hovers" /></a>


<br/><br/>]]></content:encoded>
			<wfw:commentRss>http://www.tao-of-email.com/2009/02/13/valentine%e2%80%99s-day-spammers/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Zombie PCs Attack</title>
		<link>http://www.tao-of-email.com/2009/01/16/zombie-pcs-attack/</link>
		<comments>http://www.tao-of-email.com/2009/01/16/zombie-pcs-attack/#comments</comments>
		<pubDate>Fri, 16 Jan 2009 20:41:38 +0000</pubDate>
		<dc:creator>tgolan</dc:creator>
				<category><![CDATA[e-mail]]></category>
		<category><![CDATA[Commtouch]]></category>
		<category><![CDATA[ip reputations]]></category>

		<guid isPermaLink="false">http://www.tao-of-email.com/?p=147</guid>
		<description><![CDATA[Internet News published this article yesterday, about zombie PCs (http://www.internetnews.com/security/article.php/3796526/The+Webs+Latest+Threat+Smarter+Zombies.htm) getting smarter and harder to track, as they are regularly asking for new IP addresses from their ISPs, ultimately rendering anti-spam software that works by blocking IPs now useless:
Unfortunately, my first thought reading through this is a big “I told you so” to the universe [...]]]></description>
			<content:encoded><![CDATA[<p>Internet News published this article yesterday, about <a href="http://www.internetnews.com/security/article.php/3796526/The+Webs+Latest+Threat+Smarter+Zombies.htm" target="_blank">zombie PCs</a> (http://www.internetnews.com/security/article.php/3796526/The+Webs+Latest+Threat+Smarter+Zombies.htm) getting smarter and harder to track, as they are regularly asking for new IP addresses from their ISPs, ultimately rendering anti-spam software that works by blocking IPs now useless:</p>
<p>Unfortunately, my first thought reading through this is a big “I told you so” to the universe of security experts who keep insisting that IP reputation is the silver bullet in the ongoing war against spam and other e-mail bourn threats. <a href="www.commtouch.com" target="_blank">Commtouch</a> (www.commtouch.com) is a world recognized expert in the field of IP based reputation and should be taken at their word. If they say that IP reputation is finally dead, I would agree.</p>
<p>The fact that IP based reputation schemes are flawed has been well known to <a href="www.sendio.com" target="_blank">Sendio</a> (www.sendio.com) for years. We have always believed the only type of security that really works is active security. All of the current IP reputation schemes are passive/reactive; employing complex algorithms to make guesses based on patterns and probabilities. Clearly, in a world where there is big money at stake, the bad guys are highly motivated to find mechanism that allow them to evade these passive security paradigms.</p>
<p>I believe the time has come for the security community-at-large to recognize that we need to move away from passive guessing schemes to active authentication methodologies.</p>



Share and Enjoy:


	<a rel="nofollow" target="_blank" href="http://digg.com/submit?phase=2&amp;url=http%3A%2F%2Fwww.tao-of-email.com%2F2009%2F01%2F16%2Fzombie-pcs-attack%2F&amp;title=Zombie%20PCs%20Attack" title="Digg"><img src="http://www.tao-of-email.com/wp-content/plugins/sociable/images/digg.png" title="Digg" alt="Digg" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://sphinn.com/submit.php?url=http%3A%2F%2Fwww.tao-of-email.com%2F2009%2F01%2F16%2Fzombie-pcs-attack%2F&amp;title=Zombie%20PCs%20Attack" title="Sphinn"><img src="http://www.tao-of-email.com/wp-content/plugins/sociable/images/sphinn.png" title="Sphinn" alt="Sphinn" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://del.icio.us/post?url=http%3A%2F%2Fwww.tao-of-email.com%2F2009%2F01%2F16%2Fzombie-pcs-attack%2F&amp;title=Zombie%20PCs%20Attack" title="del.icio.us"><img src="http://www.tao-of-email.com/wp-content/plugins/sociable/images/delicious.png" title="del.icio.us" alt="del.icio.us" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://www.facebook.com/share.php?u=http%3A%2F%2Fwww.tao-of-email.com%2F2009%2F01%2F16%2Fzombie-pcs-attack%2F&amp;t=Zombie%20PCs%20Attack" title="Facebook"><img src="http://www.tao-of-email.com/wp-content/plugins/sociable/images/facebook.png" title="Facebook" alt="Facebook" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://www.mixx.com/submit?page_url=http%3A%2F%2Fwww.tao-of-email.com%2F2009%2F01%2F16%2Fzombie-pcs-attack%2F&amp;title=Zombie%20PCs%20Attack" title="Mixx"><img src="http://www.tao-of-email.com/wp-content/plugins/sociable/images/mixx.png" title="Mixx" alt="Mixx" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://www.google.com/bookmarks/mark?op=edit&amp;bkmk=http%3A%2F%2Fwww.tao-of-email.com%2F2009%2F01%2F16%2Fzombie-pcs-attack%2F&amp;title=Zombie%20PCs%20Attack" title="Google"><img src="http://www.tao-of-email.com/wp-content/plugins/sociable/images/googlebookmark.png" title="Google" alt="Google" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://www.linkedin.com/shareArticle?mini=true&amp;url=http%3A%2F%2Fwww.tao-of-email.com%2F2009%2F01%2F16%2Fzombie-pcs-attack%2F&amp;title=Zombie%20PCs%20Attack&amp;source=The+Tao+of+E-Mail+Following+the+Way+of+e-mail.&amp;summary=Internet%20News%20published%20this%20article%20yesterday%2C%20about%20zombie%20PCs%20%28http%3A%2F%2Fwww.internetnews.com%2Fsecurity%2Farticle.php%2F3796526%2FThe%2BWebs%2BLatest%2BThreat%2BSmarter%2BZombies.htm%29%20getting%20smarter%20and%20harder%20to%20track%2C%20as%20they%20are%20regularly%20asking%20for%20new%20IP%20addres" title="LinkedIn"><img src="http://www.tao-of-email.com/wp-content/plugins/sociable/images/linkedin.png" title="LinkedIn" alt="LinkedIn" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://slashdot.org/bookmark.pl?title=Zombie%20PCs%20Attack&amp;url=http%3A%2F%2Fwww.tao-of-email.com%2F2009%2F01%2F16%2Fzombie-pcs-attack%2F" title="Slashdot"><img src="http://www.tao-of-email.com/wp-content/plugins/sociable/images/slashdot.png" title="Slashdot" alt="Slashdot" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://www.stumbleupon.com/submit?url=http%3A%2F%2Fwww.tao-of-email.com%2F2009%2F01%2F16%2Fzombie-pcs-attack%2F&amp;title=Zombie%20PCs%20Attack" title="StumbleUpon"><img src="http://www.tao-of-email.com/wp-content/plugins/sociable/images/stumbleupon.png" title="StumbleUpon" alt="StumbleUpon" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://technorati.com/faves?add=http%3A%2F%2Fwww.tao-of-email.com%2F2009%2F01%2F16%2Fzombie-pcs-attack%2F" title="Technorati"><img src="http://www.tao-of-email.com/wp-content/plugins/sociable/images/technorati.png" title="Technorati" alt="Technorati" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://twitter.com/home?status=http%3A%2F%2Fwww.tao-of-email.com%2F2009%2F01%2F16%2Fzombie-pcs-attack%2F" title="TwitThis"><img src="http://www.tao-of-email.com/wp-content/plugins/sociable/images/twitter.png" title="TwitThis" alt="TwitThis" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="http://ping.fm/ref/?link=http%3A%2F%2Fwww.tao-of-email.com%2F2009%2F01%2F16%2Fzombie-pcs-attack%2F&amp;title=Zombie%20PCs%20Attack" title="Ping.fm"><img src="http://www.tao-of-email.com/wp-content/plugins/sociable/images/ping.png" title="Ping.fm" alt="Ping.fm" class="sociable-hovers" /></a>
	<a rel="nofollow" target="_blank" href="https://favorites.live.com/quickadd.aspx?marklet=1&amp;url=http%3A%2F%2Fwww.tao-of-email.com%2F2009%2F01%2F16%2Fzombie-pcs-attack%2F&amp;title=Zombie%20PCs%20Attack" title="Live"><img src="http://www.tao-of-email.com/wp-content/plugins/sociable/images/live.png" title="Live" alt="Live" class="sociable-hovers" /></a>


<br/><br/>]]></content:encoded>
			<wfw:commentRss>http://www.tao-of-email.com/2009/01/16/zombie-pcs-attack/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
