<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>The Huz Experience &#187; Spamming Bastards</title>
	<atom:link href="http://www.huz.org.uk/category/spammers/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.huz.org.uk</link>
	<description></description>
	<lastBuildDate>Tue, 06 Jul 2010 22:39:37 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.8.3</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>Victory in Spamville</title>
		<link>http://www.huz.org.uk/spammers/victory-in-spamville/</link>
		<comments>http://www.huz.org.uk/spammers/victory-in-spamville/#comments</comments>
		<pubDate>Wed, 26 Jul 2006 20:02:54 +0000</pubDate>
		<dc:creator>Huzbo</dc:creator>
				<category><![CDATA[Spamming Bastards]]></category>

		<guid isPermaLink="false">http://www.huz.org.uk/spammers/victory-in-spamville/</guid>
		<description><![CDATA[94% of all comments are spam.
Hardly a surprising statistic when you look at the amount of trouble this meagre site has had with the spamming hordes. I wouldn&#8217;t care to guess what the ratio of spam-to-ham is like here, but I bet it&#8217;s nowhere near as good as 6% real meat.
Fortunately, the spammers that hit [...]]]></description>
			<content:encoded><![CDATA[<p>94% of all comments are spam.</p>
<p>Hardly a surprising statistic when you look at the amount of trouble this meagre site has had with the <a href="/category/spammers">spamming hordes</a>. I wouldn&#8217;t care to guess what the ratio of spam-to-ham is like here, but I bet it&#8217;s nowhere near as good as 6% real meat.</p>
<p>Fortunately, the spammers that hit this site regularly are a particularly stupid bunch, and even a small sample of their automated antics was enough to build a bulletproof spam filter back in January. Recently, though, they&#8217;ve started being a bit more subtle:</p>
<p style="text-align: center"><img src="/images/site/commentbycrap.png" alt="Crap indeed." height="99" width="217" /></p>
<p>These enigmatic gems pushed me over the edge and I implemented <a href="http://akismet.com/">Akismet</a>, an online service for preventing comment spam. Their home page is where I got my 94% figure.</p>
<p>The idea&#8217;s simple enough: when someone sees fit to hurl their erudite observations at your feet, your blog queries Akismet&#8217;s web service with the contents, and receives the thumbs-up or thumbs-down from them in reply.</p>
<p>So far it seems to work, with one minor drawback: all my <em>own</em> comments are flagged as spam. Less than ideal, but hopefully that&#8217;ll stop with time.</p>
<p>Victory over the bastards again &#8211; for another six months at least.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.huz.org.uk/spammers/victory-in-spamville/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Spammers: Not Even Trying Any More</title>
		<link>http://www.huz.org.uk/spammers/spammers-not-even-trying-any-more/</link>
		<comments>http://www.huz.org.uk/spammers/spammers-not-even-trying-any-more/#comments</comments>
		<pubDate>Sat, 08 Jul 2006 20:57:45 +0000</pubDate>
		<dc:creator>Huzbo</dc:creator>
				<category><![CDATA[Spamming Bastards]]></category>

		<guid isPermaLink="false">http://www.huz.org.uk/spammers/spammers-not-even-trying-any-more/</guid>
		<description><![CDATA[
Remember the good old days when email spam was straightforward? You&#8217;d crack open your email account to be met with a deluge of subject lines promising HOT HOT SEX and WILD, WILD, WILD TRACTION ACTION &#8211; and that was just the ad for Microsoft Monster Truck Madness &#8211; and perhaps the odd message, buried within [...]]]></description>
			<content:encoded><![CDATA[<p style="text-align: center"><img src="/images/site/gotspampantograph.jpg" alt="Mr Pantograph Snaffle - YOU'VE GOT SPAM!" height="227" width="400" /></p>
<p>Remember the good old days when email spam was straightforward? You&#8217;d crack open your email account to be met with a deluge of subject lines promising <strong>HOT HOT SEX</strong> and <strong>WILD, WILD, WILD TRACTION ACTION</strong> &#8211; and that was just the ad for <em>Microsoft Monster Truck Madness</em> &#8211; and perhaps the odd message, buried within it, from your mate who&#8217;d just discovered the Internet. Life was simpler then.</p>
<p>Nowadays, spammers go to all sorts of lengths to make their subject lines look innocuous, and one of their favourites is including a common name in the hope that it&#8217;s <em>yours</em>. You know the sort of thing: &#8220;Hi, Dave!&#8221; or &#8220;Check this out, John Smith!&#8221;. That&#8217;s some good spamming, and fairly likely to be semi-successful.</p>
<p>Then we have the cretins who bombard <em>huz.org.uk</em>&#8217;s role accounts:</p>
<p style="text-align: center"><img src="/images/site/pantographsnaffle.png" alt="Paddle Board. Pan Slavist. Pantograph Snaffle?!" height="136" width="400" /></p>
<p>Pantograph&#8230; Snaffle?</p>
<p>Good work, guys.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.huz.org.uk/spammers/spammers-not-even-trying-any-more/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>SpamWatch Update</title>
		<link>http://www.huz.org.uk/spammers/spamwatch-update/</link>
		<comments>http://www.huz.org.uk/spammers/spamwatch-update/#comments</comments>
		<pubDate>Sat, 24 Jun 2006 19:53:34 +0000</pubDate>
		<dc:creator>Huzbo</dc:creator>
				<category><![CDATA[Spamming Bastards]]></category>

		<guid isPermaLink="false">http://www.huz.org.uk/games/indiana-jones-and-the-fate-of-atlantis/</guid>
		<description><![CDATA[Ryan tells me that his Psychonauts site has had 913 spam comments posted to one of its news articles, and 1400 to another. That&#8217;s quite a lot, so it prompted me to have a look at my top secret log of comments that have been censored by this site&#8217;s crack team of moderators &#8211; or, [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://ryansgoblog.com/">Ryan</a> tells me that his Psychonauts site has had 913 spam comments posted to one of its news articles, and 1400 to another. That&#8217;s quite a lot, so it prompted me to have a look at my <a href="http://live.huz.org.uk/rss/abuselog.txt">top secret log</a> of comments that have been censored by this site&#8217;s crack team of moderators &#8211; or, more accurately, simply blocked by some fairly straightforward filters.</p>
<p>Can you guess how many have been blocked since last Sunday, 18th June, readers?</p>
<p>The answer: 1134. Man, subtlety is not the spammer&#8217;s strong suit.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.huz.org.uk/spammers/spamwatch-update/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>PHP Security: A Rant</title>
		<link>http://www.huz.org.uk/rants/php-security-a-rant/</link>
		<comments>http://www.huz.org.uk/rants/php-security-a-rant/#comments</comments>
		<pubDate>Tue, 07 Feb 2006 18:10:08 +0000</pubDate>
		<dc:creator>Huzbo</dc:creator>
				<category><![CDATA[Rants]]></category>
		<category><![CDATA[Spamming Bastards]]></category>
		<category><![CDATA[Techo Techno Techno!]]></category>

		<guid isPermaLink="false">http://www.huz.org.uk/rants/php-security-a-rant/</guid>
		<description><![CDATA[Haven&#8217;t had a good rant on here for a while.
Apparently spammers, not content with spamming-up my comments, have now moved on to abusing my email form (now defunct). What fun! This time they&#8217;ve concocted an ingenious wheeze for injecting their own headers into the generated emails, allowing them to add their own &#8216;Cc:&#8217; and &#8216;Bcc:&#8217; [...]]]></description>
			<content:encoded><![CDATA[<p>Haven&#8217;t had a good rant on here for a while.</p>
<p>Apparently spammers, not content with <a href="/spammers/spammers/">spamming-up my comments</a>, have now moved on to abusing my email form (now defunct). What fun! This time they&#8217;ve concocted an ingenious wheeze for injecting their own headers into the generated emails, allowing them to add their own &#8216;Cc:&#8217; and &#8216;Bcc:&#8217; lines with impunity. That allows them to fire emails off to all and sundry &#8211; in addition to me, the unchangable &#8216;To:&#8217; addressee, of course.</p>
<p>This is all possible thanks to the wonders of <a href="http://securephp.damonkohler.com/index.php/Email_Injection">injection for the PHP mail() function</a>. It&#8217;s simple enough: you shove in some magic characters when filling in the form, and suddenly you can write whatever you want in the email headers. Not good.</p>
<p>Why is this still possible? It&#8217;s 2006! The first time I came across a problem like this, it was on a MUD. Yes, that fine piece of 80s technology, friend of university procrastinators everywhere. (The only friend, but we won&#8217;t go into that.) You could exploit badly written code to inject your own, wreaking all kinds of havok if you chose your mark carefully.</p>
<p>Sound familiar?</p>
<p>Why is the PHP mail() function so stupid? Why is it left to the PHP programmer to prevent this nastiness? Why is it left to <em>any</em> user of <em>any</em> similar function to consider all these possibilities? It&#8217;s not reasonable to expect PHP programmers each to duplicate each others&#8217; effort, all to thwart the same idiotic flaw in a built-in function.</p>
<p>I&#8217;m sure it&#8217;s a simple oversight on the part of the PHP developers &#8211; as are most flaws allowing this kind of injection &#8211; but hey, it&#8217;s not called a rant for nothing. Bloody PHP, and bloody spammers.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.huz.org.uk/rants/php-security-a-rant/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Spammers</title>
		<link>http://www.huz.org.uk/spammers/spammers/</link>
		<comments>http://www.huz.org.uk/spammers/spammers/#comments</comments>
		<pubDate>Fri, 27 Jan 2006 18:06:22 +0000</pubDate>
		<dc:creator>Huzbo</dc:creator>
				<category><![CDATA[Spamming Bastards]]></category>

		<guid isPermaLink="false">http://www.huz.org.uk/spammers/spammers/</guid>
		<description><![CDATA[God, spammers. Aren&#8217;t they annoying? Whether it&#8217;s filling your inbox with messages about your willy or clogging up this fine site with ads for Phentermine &#8211; whatever that is &#8211; they definitely want shooting.
I haven&#8217;t personally had much spam in a long time &#8211; this isn&#8217;t a hint &#8211; mostly because I avoid posting my [...]]]></description>
			<content:encoded><![CDATA[<p>God, spammers. Aren&#8217;t they annoying? Whether it&#8217;s filling your inbox with messages about your willy or clogging up this fine site with ads for Phentermine &#8211; whatever <em>that</em> is &#8211; they definitely want shooting.</p>
<p>I haven&#8217;t personally had much spam in a long time &#8211; this isn&#8217;t a hint &#8211; mostly because I avoid posting my email address anywhere and I make sure I sign up for sites using a Hotmail address I don&#8217;t ever have to look at. I think that&#8217;s the most effective way of keeping email spammers at bay, but there are a few more.</p>
<p><a href="http://spamassassin.apache.org/">SpamAssassin</a> is super if you can be bothered to get it running; it&#8217;s written in Perl and only really works on Unix systems. It&#8217;s great though &#8211; it assigns scores to various spam-like attributes, and if a message scores above a certain threshold, it&#8217;s thrown out. Very clever. The <a href="http://www.mozilla.com/thunderbird/">Thunderbird</a> email client lets you mark messages as &#8220;spam&#8221; or &#8220;not spam&#8221;, and learns from experience. That&#8217;s pretty clever too.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.huz.org.uk/spammers/spammers/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>It&#8217;s finally happened</title>
		<link>http://www.huz.org.uk/spammers/its-finally-happened/</link>
		<comments>http://www.huz.org.uk/spammers/its-finally-happened/#comments</comments>
		<pubDate>Sat, 07 Jan 2006 17:56:18 +0000</pubDate>
		<dc:creator>Huzbo</dc:creator>
				<category><![CDATA[Spamming Bastards]]></category>

		<guid isPermaLink="false">http://www.huz.org.uk/spammers/its-finally-happened/</guid>
		<description><![CDATA[It&#8217;s 2006, and what better way for spammers to start the year than to discover this superb web site! Obviously you should ignore any annoying spam messages that you may find littering the place like crates of dead sheep, while imagining yourself shooting a spammer IN THE FACE.
It could improve your life!
]]></description>
			<content:encoded><![CDATA[<p>It&#8217;s 2006, and what better way for spammers to start the year than to discover this superb web site! Obviously you should ignore any annoying spam messages that you may find littering the place like crates of dead sheep, while imagining yourself shooting a spammer IN THE FACE.</p>
<p>It could improve your life!</p>
]]></content:encoded>
			<wfw:commentRss>http://www.huz.org.uk/spammers/its-finally-happened/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Most Unconvincing Phishing Email Ever</title>
		<link>http://www.huz.org.uk/spammers/most-unconvincing-phishing-email-ever/</link>
		<comments>http://www.huz.org.uk/spammers/most-unconvincing-phishing-email-ever/#comments</comments>
		<pubDate>Wed, 30 Mar 2005 01:10:44 +0000</pubDate>
		<dc:creator>Huzbo</dc:creator>
				<category><![CDATA[Spamming Bastards]]></category>

		<guid isPermaLink="false">http://www.huz.org.uk/spammers/most-unconvincing-phishing-email-ever/</guid>
		<description><![CDATA[Some phishing scam emails copy every aspect of genuine emails they&#8217;re supposed to be aping, even if that means including PayPal&#8217;s special section telling you to watch out for phishing scams. Some of them just rely on you believing everything you read in a well-written, text-only email with a convincing looking link at the bottom.
Others, [...]]]></description>
			<content:encoded><![CDATA[<p>Some phishing scam emails copy every aspect of genuine emails they&#8217;re supposed to be aping, even if that means including PayPal&#8217;s special section telling you to watch out for phishing scams. Some of them just rely on you believing everything you read in a well-written, text-only email with a convincing looking link at the bottom.</p>
<p>Others, however, are like this:</p>
<blockquote><p>Tihs eliam was setn by the Bcralays serevr to vyfire yoru emial arddess. You mtsu ctelpmoe tsih prsseco by cilcking on the lkni bwole and egniretn in the slaml winodw yruo Bacrlays Membeihsrp numbre, passcode and melbarome wdro.<br />
Tsih is doen for yuor protcetion &#8211; bsuacee smoe of our mrebmes no lregno hvae acecss to tehir emial arddesses and we msut vefiry it. To virefy yruo eliam adsserd and acecss yruo bakn acnuoct , clc on the lkni bleow:</p></blockquote>
<p>Well, quite. Rest assured I&#8217;ll be handing over my login details post haste!</p>
<p>Update: Whoa &#8211; the text is screwed in Firefox/Thunderbird but for some reason it&#8217;s magically rearranged to make sense in Internet Explorer. Freaky control codes ahoy &#8211; I&#8217;ve removed them for your viewing pleasure, but I suppose this scam isn&#8217;t quite as stupid as it would seem! :~</p>
]]></content:encoded>
			<wfw:commentRss>http://www.huz.org.uk/spammers/most-unconvincing-phishing-email-ever/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
