• Welcome to ForumKorner!
    Join today and become a part of the community.

The End of Spam Is Closer Than You Think

м¢ℓσνιη

Active Member
Reputation
0
If you've noticed a lot less spam in your inbox in recent years, it's not just because spam filters are a whole lot better than they used to be, according to security expert Atif Mushtaq. The takedowns of several of the biggest spam-generating botnets on the Internet has also had a huge effect and the FireEye Malware Intelligence Lab researcher believes eliminating just a few more could virtually eliminate spam for good.

350930-grum-rostock.jpg


"Can we dream of a junk-free mailbox? Guess what—it's just a few takedowns away. In my opinion, taking down the top three spam botnets—Lethic, Cutwail, and Grum—is enough for a rapid and permanent decline in worldwide spam level. We still have to deal with small players, but I am sure that, after seeing the big players being knocked down, they will retreat as well," Mushtaq writes in a post concerning the Grum botnet published Monday on the FireEye blog.

Could it be that Bill Gates' notorious 2004 prediction that "spam will be a thing of the past in two years' time" was a trifle premature but not as laughable as it was once seemed?

The researcher, whose work on identifying the command and control (CnC) coordinates of popular spam botnets has assisted in taking down some of the world's most powerful junk email pushers, thinks at least one prominent remaining spam operation shouldn't be too difficult to dismantle as well.

"If I were to rank Grum's takedown difficulty level from one to five where five is the most difficult, I would give Grum a two," Mushtaq writes of a botnet that was the world's most active as recently as January 2012 but has since slipped to the No. 3 spot behind Cutwail and Lethic. Grum produced about a third of worldwide spam at its height but as of June was driving only about 17.4 percent of junk email on the Internet.

What's interesting about Grum, he writes, is that at more than four years old it's a relative oldster in the fast-paced world of botnets. With CnC servers scattered about "in countries like Russia, Panama, and the Netherlands where authorities historically have been reluctant when dealing with abuse notifications," Grum is sort of the tortoise of the botnet scene, keeping its head down and eventually outpacing the high-flying, hard-crashing hares like Rustock.

Still, taking down Grum should be possible thanks to some "obvious architecture-level weaknesses," according to Mushtaq. These include a lack of a "fallback mechanism" from the master CnC servers to secondary servers, the ability to shut down big chunks of Grum even if some CnCs survive, and its reliance on hard-coded IP addresses.

Mushtaq figures big-time spam operations have been on the ropes for some time, but warns that security researchers and anti-spam authorities have to go in for the kill pretty soon.

"No doubt global spam volume is at a record low, thanks to the research community's efforts against spammers. But the research community needs to maintain this pressure until we reach a point where the bad guys start thinking that becoming a spammer is not worth the risk," he writes.

Source
 

Quad

User is banned.
Reputation
0
how do you simply take down a spam botnet? and what stops them from doing so right this second?
 

Archer

Power member.
Reputation
0
Well, that's good to know. The sooner the better...some of those suckers still passes through the filter.
 

TheRealHook3r

Active Member
Reputation
0
It would be great to log on and see only emails that truly apply to you.
 

Poop

Active Member
Reputation
0
Yeah i have 0 spam in my spam folder an i love it.
 

Purp

Member
Reputation
0
No spam is what defines an email whats the point of a email when there's no spam of viruses and weird porn links :p
 

Ewan

User is banned.
Reputation
0
I hate spam in my email. Especially when it's in my personal email address.
 

Ewan

User is banned.
Reputation
0
Haha, I use Yahoo mail for my personal account and all I get is stuff like PPI claims and other bull :p
 

м¢ℓσνιη

Active Member
Reputation
0
Superman said:
It just doesn't feel like a real Yahoo account with no spam.

Now that is true. Plus you need some emails to read every morning :p
 

Despise

User is banned.
Reputation
0
I use my yahoo account to receive my spam lol, glad it will finnaly be over.
 

Ewan

User is banned.
Reputation
0
Hotmail is also filled with a lot of spam! Is it just me?
 
Top