The InformationWeek -- Blogs
Welcome Guest. | Log In| Register | Membership Benefits

Security

Topics:   Security

  • Email this page E-mail this page
  • Print this page Print this page
  • Bookmark and Share
  • icon

Let's Make 2006 The Year We Wipe Out Spam


Posted by Mitch Wagner, Dec 30, 2005 05:42 PM

We don't care about spam anymore, and that's wrong. Spam is a crime highway that runs straight through your computer, carrying a cargo of worms, fraud, viruses and other attacks.

Security vendor Sophos reported that attacks jumped 48% in the first 11 months of 2005. The most dangerous threats were spam-distributed.

Spam has direct financial costs, as network managers are required to spend money on software and services to filter spam, and buy additional hardware and bandwidth to carry the load of unwanted e-mail. That's money and resources that could be used for something productive.

And that's just the beginning. Secondary costs of spam are even worse.


Attackers use their spam-borne attacks to take over target computers, and then use those computers to send more spam, which delivers a payload of fraudulent business offers and questionable medical remedies to prey on the fearful, ignorant, and insecure.

Compromised machines also become platforms to launch denial-of-service attacks. Often, the denial-of-service attacks are accompanied by threats to continue, and keep a business offline, unless the business pays the attackers to stop.

In a pathetic display of government incompetence, the Federal Trade Commission recently admitted that it can't prove that the two-year-old CAN SPAM law reduced. Less spam gets into users' in-boxes, but the spam that gets in is more malicious, the FTC said. Spam comprised 68% of e-mail in 2005, down from 77% in 2004. according to anti-spam vendor MX Logic, which said that technology, not the law, was responsible for the decline, noting that 96% of junk mail violates the requirements of CAN-SPAM.

You already know most of the preceding, but you don't really think about it. I know you don't think about it because if you thought about it, you'd do something about it. The Internet has become a crime zone, and decent users are like residents of gated communities, who've learned to ignore the sirens and breaking glass.

What needs to happen to stop spam? Technology has taken us about as far as we can go. We need better laws. CAN-SPAM is currently fairly useless--it allows marketers to send unsolicited bulk e-mails so long as they identify themselves and provide unsubscribe unstructions; the law needs to be amended to, quite simply, ban unsolicited bulk e-mail. What kind of assault law would allow attackers to hit you over the head so long as they identify themselves ("Hi, I'm Bill, I'll be the guy beating you up today!") and stop when you ask them to?

Moreover, CAN-SPAM needs to be amended to allow for the right of private action. Currently, only the government has the right to sue spammers, which creates bottlenecks. Anybody who receives spam should have a right to sue.

Is spam a big problem for you? What are you doing about it? What should society do about it? Leave a message below to let us know.

« Priorities Out Of Order | Main | Daily News Podcast, Tuesday, Jan. 3 »



Sign Up Now
For InformationWeek News Alerts




This is a public forum. United Business Media and its affiliates are not responsible for and do not control what is posted herein. United Business Media makes no warranties or guarantees concerning any advice dispensed by its staff members or readers.

Community standards in this comment area do not permit hate language, excessive profanity, or other patently offensive language. Please be aware that all information posted to this comment area becomes the property of United Business Media LLC and may be edited and republished in print or electronic format as outlined in United Business Media's Terms of Service.

Important Note: This comment area is NOT intended for commercial messages or solicitations of business.




 
 

  1. Here's to the First Responders!
  2. HPC Joins the Dummy Revolution?
  3. Detecting Scalability Problems With Intel Parallel Universe Portal


Join The InformationWeek Group On LinkedIn


                           


  1. Samsung Redefines Vaporware: 'Bada'
  2. HTC Droid Eris To Get Android 2.0 Update
  3. Verizon Wireless Starts Updating The Motorola Droid
  4. Windows 7 Upgrades Drop Ball On Data Migration


  1. Chinese Trade Policy Discriminatory, Groups Claim
  2. AOL Completes Spin-Off From Time Warner
  3. Prepaid Mobile Boosted By Smartphones
  4. Microsoft To Acquire Healthcare Specialist
  5. Opera Offers Unified Mobile UI Tool
  6. LCD Maker Pleads Guilty In Price Fixing Scheme

 

  Ars Technica
Boing Boing
Channel 9 Forums
CRN Blogs
Dr.Dobb's Portal: Blogs
Engadget
Gizmodo
GrokLaw
  Lifehacker
Schneier on Security
Slashdot
TechCrunch
Techdirt
Techmeme
Valleywag

  DECEMBER 2008
NOVEMBER 2008
OCTOBER 2008
SEPTEMBER 2008
AUGUST 2008
JULY 2008
JUNE 2008
MAY 2008
  APRIL 2008
MARCH 2008
FEBRUARY 2008
JANUARY 2008
DECEMBER 2007
NOVEMBER 2007
OCTOBER 2007
SEPTEMBER 2007