<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: NDR or Backscatter Spam &#8211; How Non Delivery Reports Become a Nuisance</title>
	<atom:link href="http://www.darknet.org.uk/2008/06/ndr-or-backscatter-spam-how-non-delivery-reports-become-a-nuisance/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.darknet.org.uk/2008/06/ndr-or-backscatter-spam-how-non-delivery-reports-become-a-nuisance/</link>
	<description>Ethical Hacking, Penetration Testing &#38; Computer Security</description>
	<lastBuildDate>Fri, 06 Nov 2009 11:19:07 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.8.5</generator>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
		<item>
		<title>By: grav</title>
		<link>http://www.darknet.org.uk/2008/06/ndr-or-backscatter-spam-how-non-delivery-reports-become-a-nuisance/#comment-123871</link>
		<dc:creator>grav</dc:creator>
		<pubDate>Tue, 01 Jul 2008 18:50:51 +0000</pubDate>
		<guid isPermaLink="false">http://www.darknet.org.uk/?p=882#comment-123871</guid>
		<description>@ Navin

It is not only my country
but pretty much any &quot;modernized&quot; country whose infrastructure is its most important sector

I bet you have a cellphone
I bet you watch TV (once in a while)
I bet you drive or take same sort of public transportation
Have you ever been on a plane?

The internet affects everything (or just about) in the vast majority of countries

I don&#039;t know if you have a mall - or for that matter any big chain stores by you - but if you do, the surveillance cameras and motion detectors and the little things that beep of you run out the door without paying are all connected somehow. For most countries, having the internet inoperable in the wake of some huge DOS attack is just as crippling - if not more crippling - than having the electricity go out.

Corporations and even some consumers have generators and can live without electricity for a while. Can people adapt to having the anarchy of a crippled infrastructure? In this case I am referring to an attack on the whole infrastructure, not just internet. 

Just my $0.02 : )

I can imagine a life without the Internet. A while back we were moving and for 6 months could not use the Internet for technical reasons. It wasn&#039;t that bad.

Could I imagine what would happen if the whole country did not have internet access? 

No. I could not. It would be like trying to return to telegram after decades of the telephone.</description>
		<content:encoded><![CDATA[<p>@ Navin</p>
<p>It is not only my country<br />
but pretty much any &#8220;modernized&#8221; country whose infrastructure is its most important sector</p>
<p>I bet you have a cellphone<br />
I bet you watch TV (once in a while)<br />
I bet you drive or take same sort of public transportation<br />
Have you ever been on a plane?</p>
<p>The internet affects everything (or just about) in the vast majority of countries</p>
<p>I don&#8217;t know if you have a mall &#8211; or for that matter any big chain stores by you &#8211; but if you do, the surveillance cameras and motion detectors and the little things that beep of you run out the door without paying are all connected somehow. For most countries, having the internet inoperable in the wake of some huge DOS attack is just as crippling &#8211; if not more crippling &#8211; than having the electricity go out.</p>
<p>Corporations and even some consumers have generators and can live without electricity for a while. Can people adapt to having the anarchy of a crippled infrastructure? In this case I am referring to an attack on the whole infrastructure, not just internet. </p>
<p>Just my $0.02 : )</p>
<p>I can imagine a life without the Internet. A while back we were moving and for 6 months could not use the Internet for technical reasons. It wasn&#8217;t that bad.</p>
<p>Could I imagine what would happen if the whole country did not have internet access? </p>
<p>No. I could not. It would be like trying to return to telegram after decades of the telephone.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Navin</title>
		<link>http://www.darknet.org.uk/2008/06/ndr-or-backscatter-spam-how-non-delivery-reports-become-a-nuisance/#comment-123866</link>
		<dc:creator>Navin</dc:creator>
		<pubDate>Tue, 01 Jul 2008 09:49:39 +0000</pubDate>
		<guid isPermaLink="false">http://www.darknet.org.uk/?p=882#comment-123866</guid>
		<description>Once again man, I point out the dependence of your country on the net...its absolutely amusing (while also amazingly serious) to say tht a day widout the internet and boom!!( tht&#039;s for dramatic effect BTW), your entire system from medicine to defence to transport all comes to a grinding halt...screeeeeeeeeech!! (another dramatic effect)...Its hard to think how your country worked 3 decades ago (before the internet came into the picture)</description>
		<content:encoded><![CDATA[<p>Once again man, I point out the dependence of your country on the net&#8230;its absolutely amusing (while also amazingly serious) to say tht a day widout the internet and boom!!( tht&#8217;s for dramatic effect BTW), your entire system from medicine to defence to transport all comes to a grinding halt&#8230;screeeeeeeeeech!! (another dramatic effect)&#8230;Its hard to think how your country worked 3 decades ago (before the internet came into the picture)</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: grav</title>
		<link>http://www.darknet.org.uk/2008/06/ndr-or-backscatter-spam-how-non-delivery-reports-become-a-nuisance/#comment-123852</link>
		<dc:creator>grav</dc:creator>
		<pubDate>Mon, 30 Jun 2008 19:32:34 +0000</pubDate>
		<guid isPermaLink="false">http://www.darknet.org.uk/?p=882#comment-123852</guid>
		<description>Sleepy, you have made my day

I know that you understood that I was joking when I called it cool : )

The people that do things like that are in my opinion, royal douches

I would not like to imagine a week without internet in my WHOLE FRICKING COUNTRY!!! 

Thank You Sleepy</description>
		<content:encoded><![CDATA[<p>Sleepy, you have made my day</p>
<p>I know that you understood that I was joking when I called it cool : )</p>
<p>The people that do things like that are in my opinion, royal douches</p>
<p>I would not like to imagine a week without internet in my WHOLE FRICKING COUNTRY!!! </p>
<p>Thank You Sleepy</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Sleepy</title>
		<link>http://www.darknet.org.uk/2008/06/ndr-or-backscatter-spam-how-non-delivery-reports-become-a-nuisance/#comment-123848</link>
		<dc:creator>Sleepy</dc:creator>
		<pubDate>Mon, 30 Jun 2008 18:49:43 +0000</pubDate>
		<guid isPermaLink="false">http://www.darknet.org.uk/?p=882#comment-123848</guid>
		<description>I&#039;m not so sure that&#039;s a &quot;cool&quot; use of a botnet. But for the sake of learning I&#039;ll leave my comments at that. I&#039;m glad Darknet gives those of us interested in security a place to discuss things but posts like that sure remind me that we are not all necessarily working with the same agenda.

Good post nonetheless grav.</description>
		<content:encoded><![CDATA[<p>I&#8217;m not so sure that&#8217;s a &#8220;cool&#8221; use of a botnet. But for the sake of learning I&#8217;ll leave my comments at that. I&#8217;m glad Darknet gives those of us interested in security a place to discuss things but posts like that sure remind me that we are not all necessarily working with the same agenda.</p>
<p>Good post nonetheless grav.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: grav</title>
		<link>http://www.darknet.org.uk/2008/06/ndr-or-backscatter-spam-how-non-delivery-reports-become-a-nuisance/#comment-123846</link>
		<dc:creator>grav</dc:creator>
		<pubDate>Mon, 30 Jun 2008 18:32:46 +0000</pubDate>
		<guid isPermaLink="false">http://www.darknet.org.uk/?p=882#comment-123846</guid>
		<description>The &quot;coolest&quot; use of botnets is by far to cause a DOS attack.
I don&#039;t know where I was reading it, but a massive attack was performed on one of the former USSR countries. Hackers and botnet leaders flooded the whole infrastructure with millions upon millions of requests and crippled a whole country&#039;s system for about a week. 

@ Navin

Yup, I love :25 as well! Only problem is that with the recent burst of SPAM, my ISP is blocking me from connecting to any SMTP server than their own (their&#039;s requires a password as well as a username, so it&#039;s out of the question.) 

I&#039;m sure that there is a work-around but I cannot find one. So far, I had just been using the telnet client with CMD to send prank mail to all my friends. I suppose one suitable workaround would be to just set up s SMTP server on your own machine and then just connect to &quot;localhost&quot; when you would send anonymous mail. Only thing is that your IP address would be tracked immediately. Other workarounds might include connecting to an open relay server, but those are becoming harder and harder to find... 

I suppose you could also log onto a school workstation or a library one and just use their smtp server to send mail. In general, they are more lax about protocol.</description>
		<content:encoded><![CDATA[<p>The &#8220;coolest&#8221; use of botnets is by far to cause a DOS attack.<br />
I don&#8217;t know where I was reading it, but a massive attack was performed on one of the former USSR countries. Hackers and botnet leaders flooded the whole infrastructure with millions upon millions of requests and crippled a whole country&#8217;s system for about a week. </p>
<p>@ Navin</p>
<p>Yup, I love :25 as well! Only problem is that with the recent burst of SPAM, my ISP is blocking me from connecting to any SMTP server than their own (their&#8217;s requires a password as well as a username, so it&#8217;s out of the question.) </p>
<p>I&#8217;m sure that there is a work-around but I cannot find one. So far, I had just been using the telnet client with CMD to send prank mail to all my friends. I suppose one suitable workaround would be to just set up s SMTP server on your own machine and then just connect to &#8220;localhost&#8221; when you would send anonymous mail. Only thing is that your IP address would be tracked immediately. Other workarounds might include connecting to an open relay server, but those are becoming harder and harder to find&#8230; </p>
<p>I suppose you could also log onto a school workstation or a library one and just use their smtp server to send mail. In general, they are more lax about protocol.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Navin</title>
		<link>http://www.darknet.org.uk/2008/06/ndr-or-backscatter-spam-how-non-delivery-reports-become-a-nuisance/#comment-123827</link>
		<dc:creator>Navin</dc:creator>
		<pubDate>Sun, 29 Jun 2008 11:24:04 +0000</pubDate>
		<guid isPermaLink="false">http://www.darknet.org.uk/?p=882#comment-123827</guid>
		<description>Ah...the ever so popular port 25
I&#039;ll never get bored reading about ways to misuse this port....I think the world of hacking would be very lonely widout this port!!</description>
		<content:encoded><![CDATA[<p>Ah&#8230;the ever so popular port 25<br />
I&#8217;ll never get bored reading about ways to misuse this port&#8230;.I think the world of hacking would be very lonely widout this port!!</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Darknet</title>
		<link>http://www.darknet.org.uk/2008/06/ndr-or-backscatter-spam-how-non-delivery-reports-become-a-nuisance/#comment-123825</link>
		<dc:creator>Darknet</dc:creator>
		<pubDate>Sun, 29 Jun 2008 08:16:06 +0000</pubDate>
		<guid isPermaLink="false">http://www.darknet.org.uk/?p=882#comment-123825</guid>
		<description>Yeah most spam actually already comes from Botnets, it&#039;s one of the biggest uses for compromised computers.

It&#039;s the reason why many mail services blacklist SMTP sends from dynamic IP pools and many ISP&#039;s block outgoing traffic on port 25 to stop these botnets from working.</description>
		<content:encoded><![CDATA[<p>Yeah most spam actually already comes from Botnets, it&#8217;s one of the biggest uses for compromised computers.</p>
<p>It&#8217;s the reason why many mail services blacklist SMTP sends from dynamic IP pools and many ISP&#8217;s block outgoing traffic on port 25 to stop these botnets from working.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Navin</title>
		<link>http://www.darknet.org.uk/2008/06/ndr-or-backscatter-spam-how-non-delivery-reports-become-a-nuisance/#comment-123824</link>
		<dc:creator>Navin</dc:creator>
		<pubDate>Sun, 29 Jun 2008 05:42:33 +0000</pubDate>
		<guid isPermaLink="false">http://www.darknet.org.uk/?p=882#comment-123824</guid>
		<description>@ grav
if there was something lyk tht happening widout any initial warning den it wud have disastrous results (kinda like a zero day attack) but I doubt that would happen...In real life email filters would almost instantaneously be updated and these malicious emails would be deliberately &quot;lost-in-transit&quot;. That&#039;s what I feel..... 

I really liked your $0.02 BTW, it&#039;d make a good hollywood flick</description>
		<content:encoded><![CDATA[<p>@ grav<br />
if there was something lyk tht happening widout any initial warning den it wud have disastrous results (kinda like a zero day attack) but I doubt that would happen&#8230;In real life email filters would almost instantaneously be updated and these malicious emails would be deliberately &#8220;lost-in-transit&#8221;. That&#8217;s what I feel&#8230;.. </p>
<p>I really liked your $0.02 BTW, it&#8217;d make a good hollywood flick</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: grav</title>
		<link>http://www.darknet.org.uk/2008/06/ndr-or-backscatter-spam-how-non-delivery-reports-become-a-nuisance/#comment-123816</link>
		<dc:creator>grav</dc:creator>
		<pubDate>Sat, 28 Jun 2008 19:42:03 +0000</pubDate>
		<guid isPermaLink="false">http://www.darknet.org.uk/?p=882#comment-123816</guid>
		<description>Can you imagine what would happen if botnets (or zombie networks) and spam teamed up? Not only would the initial millions of computers be sent spam, everybody on their list would be sent something as well. This pattern could continue exponentially! What if the email clients were compromised into downloading malicious code? It would be a bot-army of spamming computers!!!

Just my $0.02</description>
		<content:encoded><![CDATA[<p>Can you imagine what would happen if botnets (or zombie networks) and spam teamed up? Not only would the initial millions of computers be sent spam, everybody on their list would be sent something as well. This pattern could continue exponentially! What if the email clients were compromised into downloading malicious code? It would be a bot-army of spamming computers!!!</p>
<p>Just my $0.02</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: david</title>
		<link>http://www.darknet.org.uk/2008/06/ndr-or-backscatter-spam-how-non-delivery-reports-become-a-nuisance/#comment-123807</link>
		<dc:creator>david</dc:creator>
		<pubDate>Thu, 26 Jun 2008 16:26:21 +0000</pubDate>
		<guid isPermaLink="false">http://www.darknet.org.uk/?p=882#comment-123807</guid>
		<description>If people start using SPF this wouldn&#039;t happen. Also depending on the antispam product that you use you can define or set the spam score of this NDR so it&#039;s effect is not that bad for the end user.</description>
		<content:encoded><![CDATA[<p>If people start using SPF this wouldn&#8217;t happen. Also depending on the antispam product that you use you can define or set the spam score of this NDR so it&#8217;s effect is not that bad for the end user.</p>
]]></content:encoded>
	</item>
</channel>
</rss>
