[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [Full-disclosure] Please help to spam abryson@xxxxxxxxxxxxxx



Alice Bryson wrote:
2006/7/24, Valdis.Kletnieks@xxxxxx <Valdis.Kletnieks@xxxxxx>:
On Mon, 24 Jul 2006 15:58:13 +0800, Alice Bryson said:
>     I am collecting spam for research using the mailbox
> abryson@xxxxxxxxxxxxxx

Step one: Convince us you're really Alice Bryson and this isn't an
attempt to beseige Alice with spam....


Yes, i am Alice, to prove that you can send an email with a long
number to abryson@xxxxxxxxxxxxx, and i will reply you that number, ok?

What does that prove?

telnet mail.40networks.com 25
Trying 64.114.199.200...
Connected to mail.40networks.com.
Escape character is '^]'.
220 40networks.com ESMTP Sendmail 8.13.1/8.13.1; Mon, 24 Jul 2006 09:45:17 -0700
EHLO utdallas.edu
250-40networks.com Hello utd59514.utdallas.edu [129.110.3.28], pleased to meet you
250-ENHANCEDSTATUSCODES
250-8BITMIME
250-SIZE
250-DSN
250-ETRN
250-AUTH GSSAPI DIGEST-MD5 CRAM-MD5
250-DELIVERBY
250 HELP
MAIL FROM: testing@xxxxxxxxxxxx
250 2.1.0 testing@xxxxxxxxxxxxxxx Sender ok
RCPT TO: abryson@xxxxxxxxxxxxx
250 2.1.5 abryson@xxxxxxxxxxxxxxxx Recipient ok
QUIT
221 2.0.0 40networks.com closing connection
Connection closed by foreign host.

So the address is valid, but we still have no way of knowing if you are really Alice Bryson or if you're someone joejobbing Alice Bryson. Do you have a digital ID? If so, sign the response to this message. Then we will know for sure that you are Alice (or that you stole her ID!)

--
Paul Schmehl (pauls@xxxxxxxxxxxx)
Adjunct Information Security Officer
The University of Texas at Dallas
http://www.utdallas.edu/ir/security/

Attachment: smime.p7s
Description: S/MIME Cryptographic Signature

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/