History ,Types, Techniques and Anti Spam Solutions

Total Page:16

File Type:pdf, Size:1020Kb

History ,Types, Techniques and Anti Spam Solutions International Journal of Advanced Science and Technology Vol. 29, No. 3s, (2020), pp. 825-834 Evolutionary Traits In Digital Spam: History ,Types, Techniques and Anti Spam Solutions M.Arunkrishna1, B. Mukunthan2 1Research Scholar, 2 Research Supervisor & Assistant Professor, 1,2Department of Computer Science, Jairams Arts and Science College, (Affiliated to Bharathidasan University, Tiruchirappalli) Karur – 639003, Tamilnadu, India. Abstract The emerging technology has led to the development of various platforms through which millions of people collaborate and communicate with each other. Spamming is the action of sending unsolicited messages through electronic messaging system. Spam is a form of platform manipulation. Spam message can be sent over multiple communication medium such as email,Instant Messages(IM), Online Social Networks(OSN) etc. Statistics show that a large proportion of internet traffic are spam. The person who spreads unsolicited contents to others are known as spammers. Spammers intentionally send messages to recipients who did not grant permission to send them. most of the messages are based on advertisements in which some of them are source of security breaches and lead to phishing or malware attack .This is because the spammers present their contents as valuable or as real one, and send them to the user. The authentic users mistake the spam information as an important one. Keywords: Spam,Digital Spam,types of Spam,Spam Detection,Anti Spam,History of spam,spam detection techniques 1. Introduction Internet is one of the most rapidly evolving technology sectors in the present day. According to the extensive use of the Internet, the electronic medium of communications has become one of the quickest and most economical modes of communication. This makes it easy for internet users to move knowledge from anywhere in the world. However, the increasing use of internet also resulted in the dramatic increase in spam messages. To combat with spam messages on the internet, variety of anti- spam techniques / solutions available with the use of software, hardware or process, we can block spam from entering in to our system. These techniques either blocks or quarantine the suspected messages. Now-a-days, spam messages rise-up into a serious security threat, because it serves as a prime medium for phishing of personal and sensitive information. Even though more number of classification techniques has been established for classification of spam, still none deliver 100% accuracy. So guaranteed accurate prediction of spam message with current experience or knowledge on it is questionable. 1.1. Spamming [8] As the possibility and internet usage grows the kind of communication has more online/internet oriented.(Email,VoIP,IRC,trillion,social networks). Online communication medium is dynamic in its nature, So it is prone to misuse. One of the common and well known issue is spamming. Spam posed to be a very serious problem for online uses. There are number of antispam solutions proposed till date, But they each have their own shortcomings. Spam messages have any one of the following qualities. Unknown sender: The receiver does not have any relation with the sender. Unsolicited: The receiver does not give permission or not interested in receiving the information. Bulk Posting: The message has been sent to large number of audience. ISSN: 2005-4238 IJAST 825 Copyright ⓒ 2020 SERSC International Journal of Advanced Science and Technology Vol. 29, No. 3s, (2020), pp. 825-834 1.2 Consequences Spam is generally any kind of unsolicited or unwanted digital content which creates a huge waste of time and money to the users. Spam mail steal bandwidth from ISP or from individual users to spread the information and hack computers and young slaving them as zombie Bolt net. Phishing email spam attempts to trick email users into think about that email is coming from somebody else who seems to be genuine such as known person company Bank etc. they redirects the recipients into a website and makes them to offer financial data financial namely credit card number and other sensitive data test this potentially damages the email recipients. 2. History of Spam 2.1. Etymology of internet spam The etymology of the modern word spam for the internet sense appears to derived from the spam skit by Monty python's flying circus. [15] Actually spam is brand name of meat sold in container made by Hormel Food Corporation. But it indirectly refers to the action of something that keeps repeating again and again to great annoyance. Because in Monty python's script a group of people sing a song with the word ‘spam’ to describe that much of ‘spam’(meat sold in container) in the items of food menu, and to irritated that waitress. Since then the word is used to describe exasperation caused by repeating and repeating something same. In the internet sense, online spam means creating nuisance by sending unwanted messages to users. Online spam causes infuriation and as well as it leads users to malware attack, hacking and phishing. 2.2 Evolution of Spam: According to [15] history of spam tract back to the year 1864 where unsolicited messages were spread over telegraph messages which contained investment offers sent to wealthy Americans. After that on May 3rd 1978, the first ever email spam was sent by young man who was working for a digital computer corporation and send spam to showcase companies new VAX computer. The email reached nearly 2600 people who had email accounts on ARPANET(The Advanced Research Projects Agency Network) . The actual word of spam in internet referred since 1993 by the bug in Usenet (an early non- centralized computer network for the discussion) cost a massive post of 200 + messages to the news.admin.policy discussion group. Then the members of that group making jokes about that incident and referred to it as ‘spam’,hence the meaning and etymology came from. In January 1994, the first large-scale spam hit Usenet with a notification called "Global Alert for All: Jesus Is Coming Soon" And then, in April of the same year, Usenet was again overloaded with an immigration law commercial by Lawrence A Canter. 1997 -1998: In 1997 first SMTP hijacking has been recorded because SMTP(Simple Mail Transfer Protocol) is a sender push technology[3]. So that we can send messages without any authentication return address. In the same year Paul vixie create Realtime Blackhole List (RBL) of spam sites . In 1998 he Greater Washington D.C. Chapter of the Internet Society (ISOC-DC) hosts meeting on spam. ISSN: 2005-4238 IJAST 826 Copyright ⓒ 2020 SERSC International Journal of Advanced Science and Technology Vol. 29, No. 3s, (2020), pp. 825-834 Figure 1. Timeline of Digital Spam Year 2000: [3] In the year 2000 Nigerian spam or The “Nigerian prince” email scam happened. It is also known as Nigerian Letter or “419” Fraud and is perhaps one of the longest- running Internet frauds. Where the sender contact victims through text or e-mail messages and encourages the recipient to send information to the e-mail author, such as bank name, account numbers, and blank letterheads. This scam is the result of spam and produced millions of dollars losses. In 2003: spamming Bot net appeared and for the first time, number of spam emails exceeded the legitimate emails. So US jurisdictions have implemented legislation to control spam with US S.877 CAN-SPAM (Controlling the Assault of Non-Solicited Pornography And Marketing) ISSN: 2005-4238 IJAST 827 Copyright ⓒ 2020 SERSC International Journal of Advanced Science and Technology Vol. 29, No. 3s, (2020), pp. 825-834 Act of 2003. It regulates the commercial email and gives recipients the right to have a business stop emailing them and authorities power to put penalties incurred for those who violate the law. 2006: Usage of emailing grows in exponential rate as a result vast majority of the emails were spam. According to Iron- Port's study on June 28, 2006, nearly 80 % of the spam emails initiated from zombie computers [11]. In June 2006, there were 55 billion daily spam emails were stated alone as compared to 35 billion daily spam emails during June 2005 [3]. 2009: Until 2009 majority of the spam send around the world were in English. But in 2009 with the increasing use of automatic language translators, spammers were started to send spam in other languages as well. So it does not have any language barriers. It comes in all languages even in Korean Chinese and all other Asian languages. 2010: An estimated 88 percentage of the internet email traffic was spam 2011: Rustock botnet was taken down by government. It was a largest botnet on record which had the numerous capacity of 30 billion emails. It can able to send 25,000 spam messages per hour from an infected PC. 2012 -2020: The rise of social media spam. And it has been the long continuing battle between the spam and Anti-spam techniques. The technology behind the creation of spam and technology between the anti-spam methods are evolving in starting rate. A few of them are email botnets mining, zombie networks, AI, domain based message authentication and ML based anti-spam techniques. 3. Types Of Spams 3.1. Spam Based on Media Mobile Phone Scams: These scams can cost their victims and are in the form of text messages/ MMS or other mode of communications that mobile phone/ smartphone uses. That was an increase number of unwanted text on advertisements had been reported during 2000 they were sent to users through text messages / calls. Mobile Applications Spam: Spamming in mobile apps includes Applications with no specific functionality. i.e., the application for automatically generated and having no functionality rather than uses.
Recommended publications
  • Glossary of Spam Terms
    white paper Glossary of Spam terms The jargon of The spam indusTry table of Contents A Acceptable Use Policy (AUP) . 5 Alias . 5 Autoresponder . 5 B Ban on Spam . 5 Bayesian Filtering . 5 C CAN-SPAM . 5 Catch Rate . 5 CAUSe . 5 Challenge Response Authentication . 6 Checksum Database . 6 Click-through . 6 Content Filtering . 6 Crawler . 6 D Denial of Service (DoS) . 6 Dictionary Attack . 6 DNSBL . 6 e eC Directive . 7 e-mail Bomb . 7 exploits Block List (XBL) (from Spamhaus org). 7 F False Negative . 7 False Positive . 7 Filter Scripting . 7 Fingerprinting . 7 Flood . 7 h hacker . 8 header . 8 heuristic Filtering . 8 honeypot . 8 horizontal Spam . 8 i internet Death Penalty . 8 internet Service Provider (iSP) . 8 J Joe Job . 8 K Keyword Filtering . 9 Landing Page . 9 LDAP . 9 Listwashing . 9 M Machine-learning . 9 Mailing List . 9 Mainsleaze . 9 Malware . 9 Mung . 9 N Nigerian 419 Scam . 10 Nuke . 10 O Open Proxy . 10 Open Relay . 10 Opt-in . 10 Opt-out . 10 P Pagejacking . 10 Phishing . 10 POP3 . 11 Pump and Dump . 11 Q Quarantine . 11 R RBLs . 11 Reverse DNS . 11 ROKSO . 11 S SBL . 11 Scam . 11 Segmentation . 11 SMtP . 12 Spam . 12 Spambot . 12 Spamhaus . 12 Spamming . 12 Spamware . 12 SPewS . 12 Spider . 12 Spim . 12 Spoof . 12 Spyware . 12 t training Set . 13 trojan horse . 13 trusted Senders List . 13 U UCe . 13 w whack-A-Mole . 13 worm . 13 V Vertical Spam . 13 Z Zombie . 13 Glossary of Spam terms A acceptable use policy (AUP) A policy statement, made by an iSP, whereby the company outlines its rules and guidelines for use of the account .
    [Show full text]
  • Impact of Time on Detecting Spammers in Twitter Mahdi Washha, Aziz Qaroush, Florence Sèdes
    Impact of Time on Detecting Spammers in Twitter Mahdi Washha, Aziz Qaroush, Florence Sèdes To cite this version: Mahdi Washha, Aziz Qaroush, Florence Sèdes. Impact of Time on Detecting Spammers in Twitter. 32ème Conférence Gestion de Données : Principes, Technologies et Applications (BDA 2016), Labora- toire d’Informatique et d’Automatique pour les Systèmes (LIAS) - Université de Poitiers et ENSMA, Nov 2016, Poitiers, France. hal-03159076 HAL Id: hal-03159076 https://hal.archives-ouvertes.fr/hal-03159076 Submitted on 5 Mar 2021 HAL is a multi-disciplinary open access L’archive ouverte pluridisciplinaire HAL, est archive for the deposit and dissemination of sci- destinée au dépôt et à la diffusion de documents entific research documents, whether they are pub- scientifiques de niveau recherche, publiés ou non, lished or not. The documents may come from émanant des établissements d’enseignement et de teaching and research institutions in France or recherche français ou étrangers, des laboratoires abroad, or from public or private research centers. publics ou privés. Distributed under a Creative Commons Attribution - NonCommercial - NoDerivatives| 4.0 International License Impact of Time on Detecting Spammers in Twitter Mahdi Washha Aziz Qaroush Florence Sedes IRIT Laboratory Birzeit University IRIT Laboratory University of Toulouse Birzeit, Palestine University of Toulouse Toulouse, France [email protected] Toulouse, France [email protected][email protected] ABSTRACT events, news, and jokes, through a messaging mechanism al- Twitter is one of the most popular microblogging social sys- lowing 140 characters maximum. Statistics states that, in tems, which provides a set of distinctive posting services November 2015, the number of active users that use Twitter operating in real time manner.
    [Show full text]
  • RESPONSE to the GROWING SPAM PROBLEM B Ly Zbang
    CYBERLAW THE CAN-SPAM ACT: AN INSUFFICIENT RESPONSE TO THE GROWING SPAM PROBLEM B Ly Zbang Although "Spam"' is tasty in a can, it is never tasty when it lands in our e-mail inboxes. Spam is an especially pernicious form of advertising because of its low cost, high-volume nature. Traditional advertisers, such as telemarketers and junk mailers, incur significant costs by employing workers, paying long-distance telephone bills, and buying envelopes and paper. In contrast, spammers expend significantly less and even shift costs to recipients, who must sort through the voluminous span they receive. Thus, spam's attractive nature has led to many abusive uses, which all contribute to the growing spam problem. As spam becomes a daily nuisance, various responses are being util- ized to combat it. Earlier methods employed vigilantism in the forms of self-regulation and self-help, but more sophisticated methods quickly emerged. Those methods included suits against spanmers under both common and state law doctrines and technological responses such as fil- tering. Then in December 2003, the federal government enacted the Con- trolling the Assault of Non-Solicited Pornography and Marketing Act of a uniform federal body of 2003 (CAN-SPAM Act2 or "the Act") to provide law against spamming. While the Act attempts to curb the spain problem, it still has some shortcomings. Some of the criticism heaped upon the Act centers around its preemptive effects on stricter state sparn laws, the severity of the penal- ties, and its alleged attempt to curb spammers' constitutional rights. Much of the criticism also accuses the Act of potentially increasing the amount of spain because the Act merely provides a set of guidelines for spammers on how to spain legally-in effect legitimizing span.
    [Show full text]
  • A Survey on Adversarial Information Retrieval on the Web
    A Survey on Adversarial Information Retrieval on the Web Saad Farooq CS Department FAST-NU Lahore [email protected] Abstract—This survey paper discusses different forms of get the user to divulge their personal information or financial malicious techniques that can affect how an information details. Such pages are also referred to as spam pages. retrieval model retrieves documents for a query and their remedies. In the end, we discuss about spam in user-generated content, including in blogs and social media. Keywords—Information Retrieval, Adversarial, SEO, Spam, Spammer, User-Generated Content. II. WEB SPAM I. INTRODUCTION Web spamming refers to the deliberate manipulation of The search engines that are available on the web are search engine indexes to increase the rank of a site. Web frequently used to deliver the contents to users according to spam is a very common problem in search engines, and has their information need. Users express their information need existed since the advent of search engines in the 90s. It in the form of a bag of words also called a query. The search decreases the quality of search results, as it wastes the time engine then analyzes the query and retrieves the documents, of users. Web spam is also referred to as spamdexing (a images, videos, etc. that best match the query. Generally, all combination of spam and indexing) when it is done for the search engines retrieve the URLs, also simply referred to as sole purpose of boosting the rank of the spam page. links, of contents. Although, a search engine may retrieve thousands of links against a query, yet users are only There are three main categories of Web Spam [1] [2].
    [Show full text]
  • Fighting Internet Spam in Brazil Historical Overview and Reflections on Combating Spam and Managing Port 25, Coordinated by the Brazilian Internet Steering Committee
    1 CGI.br BOOK SERIES Studies Fighting Internet spam in Brazil Historical overview and reflections on combating spam and managing port 25, coordinated by the Brazilian Internet Steering Committee Edited by Cristine Hoepers Henrique Faulhaber Klaus Steding-Jessen This work is licensed under a Creative Commons Attribution 4.0 International License. <http://creativecommons.org/licenses/by/4.0 Brazilian Network Information Center (NIC.br) Edited by Cristine Hoepers Henrique Faulhaber Klaus Steding-Jessen Report and interviews performed by Carlos Affonso Pereira de Souza Marilia de Aguiar Monteiro 1 CGI.BR BOOK SERIES Studies Fighting Internet spam in Brazil Historical overview and reflections on combating spam and managing port 25, coordinated by the Brazilian Internet Steering Committee Brazilian Internet Steering Committee (CGI.br) 2017 Brazilian Network Information Center (NIC.br) Chief Executive Officer Demi Getschko Chief Advisory Officer Hartmut Richard Glaser Chief Financial Officer Ricardo Narchi Chief Technology Officer Frederico Neves Director of Special Projects and Development Milton Kaoru Kashiwakura Advisory Team to the CGI.br Activities Administrative Advisors Paula Liebert, Salete Matias Technical Advisors Carlos Francisco Cecconi, Diego Rafael Canabarro, Jamila Venturini, Jean Carlos Ferreira dos Santos, Juliano Cappi, Marcelo Oliveira, Nathalia Sautchuk Patrício, Vinicius Wagner Oliveira Santos Concept & Production Coordinators Cristine Hoepers Henrique Faulhaber Klaus Steding-Jessen Report and interviews Carlos Affonso Pereira
    [Show full text]
  • CPA's Guide to Understanding and Controlling Spam Roman H
    University of Mississippi eGrove American Institute of Certified Public Accountants Guides, Handbooks and Manuals (AICPA) Historical Collection 1-1-2004 CPA's guide to understanding and controlling spam Roman H. Kepczyk American Institute of Certified Public Accountants. Information Technology Section Follow this and additional works at: https://egrove.olemiss.edu/aicpa_guides Part of the Accounting Commons, and the Taxation Commons Recommended Citation Kepczyk, Roman H. and American Institute of Certified Public Accountants. Information Technology Section, "CPA's guide to understanding and controlling spam" (2004). Guides, Handbooks and Manuals. 199. https://egrove.olemiss.edu/aicpa_guides/199 This Article is brought to you for free and open access by the American Institute of Certified Public Accountants (AICPA) Historical Collection at eGrove. It has been accepted for inclusion in Guides, Handbooks and Manuals by an authorized administrator of eGrove. For more information, please contact [email protected]. ISO Certified 091015 AMERICAN INSTITUTE OF CERTIFIED P UBLIC ACCOUNTANTS Information Spam and Controlling to Understanding A CPA’sGuide Technology Section Roman H . Kepczyk, CPA, CITP CPA, . Kepczyk, AMERICAN INSTITUTE OF CERTIFIED P UBLIC ACCOUNTANTS Information Spam and Controlling to Understanding A CPA’sGuide Technology Section Roman H . Kepczyk, CPA, CITP CPA, . Kepczyk, Controlling Spam.qxd 8/24/2004 9:41 AM Page ii Notice to Readers A CPA’s Guide to Understanding and Controlling Spam does not represent an official position of the American Institute of Certi- fied Public Accountants, and it is distributed with the under- standing that the author and the publisher are not rendering accounting or other professional services in the publication.
    [Show full text]
  • the Spam-Ish Inquisition
    :: The Spam-ish Inquisition Tired of spam with everything? Don’t fritter away your time and energy on junk mail1 David Harley Andrew Lee Table of Contents Introduction 2 Defi ning Spam 2 Professional versus Amateur Spam 3 Deceptive Elements 3 Amateur Hour 5 Why “Spam”? 6 Spam and Pornography 6 Spam Attacks 7 Bombs Away 7 Address Harvesting 8 Spam Through the Ages 8 First Sightings 8 Newsgroup Spam 9 Spreading Spam 10 Spam Economics 11 Other Spam Channels 11 SPIM 12 Text Messaging Spam 12 Blog Spam 13 Index Hijacking 14 Junk Faxes 14 Spam and Scams 14 Make Money Fast 14 Advance Fee Fraud 15 Phishing Scams 16 Mule Train 18 Pump and Dump Scams 19 Chain Letters and Hoaxes 20 Spam and the Law 21 CAN-SPAM 21 European Directive 22 Spam Countermeasures 23 Blocklists 23 Reputation Services 23 Greylisting 23 Whitelisting 24 Text Filtering 24 Heuristics 24 Commercial Anti-Spam 25 Conclusion: Living Spam-Free 26 References 27 Glossary 29 White Paper: Who Will Test the Testers? 1 Introduction Spam looks like a simple enough issue until you have to try to defi ne it: after all, we all think we know it when we see it. Most people have a working defi nition along the lines of “email I don’t want.” While that’s perfectly understandable, it is diffi cult to implement technical solutions based on such a subjective defi nition. (Actually, not all spam is email based, but we’ll get back to that in a little while.) A fractionally less subjective defi nition is “email I didn’t ask for.” However, this doesn’t really meet the case either.
    [Show full text]
  • The Email Has Landed: How Understanding and Improving Deliverability Can Help Your Messages Get Through
    THE EMAIL HAS LANDED: HOW UNDERSTANDING AND IMPROVING DELIVERABILITY CAN HELP YOUR MESSAGES GET THROUGH JANUARY 2018 TABLE OF CONTENTS 03 EXECUTIVE SUMMARY 05 THE REVOLUTION AND EVOLUTION OF EMAIL 12 PROTECT YOUR REPUTATION 16 SMART STRATEGIES 20 CONCLUSION TABLE OF CONTENTS | 02 THE EMAIL HAS LANDED EXECUTIVE SUMMARY Email marketing turns 40 years old in 2018. When Digital Equipment Corporation's Gary Thuerk1 sent a unsolicited sales pitch to 397 Arpanet users on May 3, 1978, a new type of selling was born. And so was spam. Thuerk's stunt annoyed many of his recipients. It crashed some systems. Thuerk was reprimanded and told not to do it again. Still, his pitch led to millions in computer equipment sales.2 Four decades later, email remains the top vessel for business communication. In 2017, 3.7 billion worldwide email accounts sent an estimated 269 billion emails every day.3 That's a lot of inboxes -- and a lot of messages competing for attention. Yet one in five emails won't land in an inbox at all4 , getting bounced or detoured into a spam folder instead. Even the sharpest message won't generate a single sale if the intended recipient never sees it. Understanding deliverability -- getting your message where it needs to go -- is essential for today's marketers. 1 Julia De Simone, "Meet the 'Father of Spam', a Goodyear Resident," Arizona Republic, March 31, 2016. Web. 2 Kate Stoodly, "Father of Spam Speaks Out on His Legacy," eSecurity Planet.com, November 19, 2004. Web. 3 "Email Market 2017-2021," The Radicati Group, June 2017.
    [Show full text]
  • A Multi-Faceted Approach Towards Spam-Resistible Mail ♣
    A Multi-Faceted Approach towards Spam-Resistible Mail ♣ Ming-Wei Wu* Yennun Huang † Shyue-Kung Lu‡ Ing-Yi Chen§ Sy-Yen Kuo* * Department of Electrical Engineering, National Taiwan University, Taipei, Taiwan ABSTRACT Jupiter Research estimates the average e-mail user As checking SPAM became part of our daily life, will receive more than 3,900 spam mails per year by unsolicited bulk e-mails (UBE) have become 2007, up from just 40 in 1999, and Ferris Research unmanageable and intolerable. Bulk volume of spam estimates spam costs U.S. companies 10 billion in e-mails delivering to mail transfer agents (MTAs) is 2003 and a user spends on the average 4 seconds to similar to the effect of denial of services (DDoS) process a SPAM mail. As bulk volume of spam mails attacks as it dramatically reduces the dependability overtakes legitimate mails, as reported by ZDNet and efficiency of networking systems and e-mail Australia, the effect of spam mails is similar to denial servers. Spam mails may also be used to carry viruses of service attacks (DOS) on computer servers as the and worms which could significantly affect the dependability and efficiency of networking systems availability of computer systems and networks. There and e-mail servers are dramatically reduced. Spam is have been many solutions proposed to filter spam in also used to disseminate virus and spyware which the past. Unfortunately there is no silver bullet to may severely affect the dependability of computer deter spammers and eliminate spam mails. That is, in systems and networks. isolation, each of existing spam protection There is no silver bullet, unfortunately, to deter mechanisms has its own advantages and spammers and eliminate spam as each of existing disadvantages.
    [Show full text]
  • Download Links for Viruses/Malware
    International Journal of Information Technology Convergence and Services (IJITCS) Vol.2, No.4, August 2012 A NOVEL APPROACH AGAINST E-MAIL ATTACKS DERIVED FROM USER-AWARENESS BASED TECHNIQUES Gaurav Ojha 1 and Gaurav Kumar Tak 2 1Department of Information Technology, Indian Institute of Information Technology and Management, Gwalior - 474010, India [email protected] 2School of Computer Science & Information Technology, Lovely Professional University, Phagwara, Punjab – 144402, India [email protected] ABSTRACT A large part of modern day communications are carried out through the medium of E-mails, especially corporate communications. More and more people are using E-mail for personal uses too. Companies also send notifications to their customers in E-mail. In fact, in the Multinational business scenario E-mail is the most convenient and sought-after method of communication. Important features of E-mail such as its speed, reliability, efficient storage options and a large number of added facilities make it highly popular among people from all sectors of business and society. But being largely popular has its negative aspects too. E-mails are the preferred medium for a large number of attacks over the internet. Some of the most popular attacks over the internet include spams, and phishing mails. Both spammers and phishers utilize E-mail services quite efficiently in spite of a large number of detection and prevention techniques already in place. Very few methods are actually good in detection/prevention of spam/phishing related mails but they have higher false positives. A variety of filters such as Bayesian filters, Checksum-based filters, machine learning based filters and memory-based filters are usually used in order to identify spams.
    [Show full text]
  • Representing Botnet-Enabled Cyber-Attacks and Botnet-Takedowns Using Club Theory
    Representing Botnet-enabled Cyber-attacks and Botnet-takedowns using Club Theory Olukayode Adegboyega A thesis submitted to the Faculty of Graduate Studies and Research in partial fulfillment of the requirements for the degree of Master of Applied Science in Technology Innovation Management Faculty of Engineering and Design Carleton University Copyright © May 2015, Olukayode Adegboyega ABSTRACT The literature on botnet-enabled cyber-attacks and the literature on botnet takedowns have progressed independently from each other. In this research, these two literature streams are brought together. Botnet-enabled cyber-attacks and botnet takedowns are conceptualized as collective actions carried out by individuals, groups, and organizations that are linked by the Internet and club theory is used to examine the inner workings of these collective actions. This research examines five scenarios of botnet-enabled cyber-attacks and five scenarios of botnet takedowns to develop a representation of cyber-attacks and infer capabilities of four club types: Attacker, Defender, Botnet beheader, and Botnet operator. The representation developed identifies the dimensions of the three constructs of club theory: club membership size; size of the facility that club members share; and arrangements to operate, purchase/rent and grow the shared facility. Club capabilities were organized into five types: relationships, attack infrastructure, skills, learning, and others. The results of applying club theory suggest that two club types, Attacker and Botnet operator have the ability to massively scale; whereas, for the other two club types, Defender and Botnet beheader, scalability is not evident. The implication is that clubs that fit the Attacker and Botnet operator types can bring significantly more technical resources to achieve their goals than the clubs that fit the Defender and Botnet beheader types.
    [Show full text]
  • A Content-Agnostic Comment Spam Inference System
    NEIGHBORWATCHER: A Content-Agnostic Comment Spam Inference System Jialong Zhang and Guofei Gu SUCCESS Lab, Department of Computer Science & Engineering Texas A&M University, College Station, TX fjialong,[email protected] Abstract the search rank of a target website than it should have. The rise of such spam causes unnecessary work for search en- Comment spam has become a popular means for spam- gine crawlers, annoys search engine users with poor search mers to attract direct visits to target websites, or to manip- results, and even often leads to phishing websites or mal- ulate search ranks of the target websites. Through posting ware drive-by downloads. In a recent study [15], Google a small number of spam messages on each victim website reports about 95,000 new malicious websites every day, (e.g., normal websites such as forums, wikis, guestbooks, which results in 12-14 million daily search-related warnings and blogs, which we term as spam harbors in this paper) but and 300,000 download alerts. spamming on a large variety of harbors, spammers can not To boost the ranking of the target websites, spammers only directly inherit some reputations from these harbors have already developed lots of spamdexing techniques [25] but also avoid content-based detection systems deployed on in the past few years, most of which also called Black Hat these harbors. To find such qualified harbors, spammers SEO (Search Engine Optimization). Text and Link manipu- always have their own preferred ways based on their avail- lations are two main SEO techniques frequently abused by able resources and the cost (e.g., easiness of automatic post- spammers to exploit the incorrect application of page rank ing, chances of content sanitization on the website).
    [Show full text]