LSTOWN-L Archives

LISTSERV List Owners' Forum

LSTOWN-L

Options: Use Monospaced Font
Show Text Part by Default
Show All Mail Headers

Topic: [<< First] [< Prev] [Next >] [Last >>]

Print Reply
"Paul M. Karagianis" <[log in to unmask]>
Wed, 9 Apr 1997 15:06:39 EDT
text/plain (30 lines)
In brief:  I would like LSoft to change the subscription mechanism to
return all of the subscribers headers on a subscription request, or to
make this feature available as a site or list option as LSoft sees fit.
The full text and headers of the subscription request would be returned
to the subscriber or forwarded to the list owner as appropriate to the
lists configuration.  The purpose would be to provide additional info
to the victims of auto-forgers to determine who had attacked them.

Background.  Last Nov. three of this sites 400+ lists were wired as the
default targets of a highly rated auto-forger interface called Kaboom
v3.0 (further info available via feeding kaboom!3.zip to AltaVista) which
was widely circulated.  All the targeted lists at this site were already
set to subscription by owner, and as of early Spring all 60 of the lists
had been configured to defeat this mechanism and the author withdrew the
zipfile.  None the less, I just checked our server and intercepted 7
sets of attacks in 32 minutes on this fairly typical day.  This indicates
to me that the typical mailbomber is an even bigger idiot than one would
otherwise assume, if possible.  The side effects are increased overhead
on the owners and numerous requests to me (as Postmaster) from the victims
(or frequently their Postmasters) to sift through massive SMTP logs so
that I can manually send back information that is, in every case I've
checked, the same or slightly inferior to the information in the header
of the subscription request.

In response to an owner inquiry yesterday I did a specific audit that
indicates to me that there is at least one other auto-forger being run
against our OLD server (that we migrated from two months ago);  I have
no idea what's going on with the new server.
                                                      -Kary

ATOM RSS1 RSS2