<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Intrepid Blog &#187; spam</title>
	<atom:link href="http://blog.affien.com/archives/tag/spam/feed/" rel="self" type="application/rss+xml" />
	<link>http://blog.affien.com</link>
	<description>A few thoughts</description>
	<lastBuildDate>Mon, 01 Mar 2010 00:58:01 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.9.2</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>The (or at least a better) Solution to Spam</title>
		<link>http://blog.affien.com/archives/2007/08/14/the-or-at-least-a-better-solution-to-spam/</link>
		<comments>http://blog.affien.com/archives/2007/08/14/the-or-at-least-a-better-solution-to-spam/#comments</comments>
		<pubDate>Tue, 14 Aug 2007 16:45:34 +0000</pubDate>
		<dc:creator>Bas Westerbaan</dc:creator>
				<category><![CDATA[SINP]]></category>
		<category><![CDATA[future of the internet]]></category>
		<category><![CDATA[spam]]></category>
		<category><![CDATA[web of trust]]></category>

		<guid isPermaLink="false">http://blog.w-nz.com/archives/2007/08/14/the-or-at-least-a-better-solution-to-spam/</guid>
		<description><![CDATA[There is no easy way to distinguish between a human and a spambot.  It&#8217;s an arms race which we&#8217;ll always be behind.  I&#8217;m talking here about spam in more general&#8212;not only on e-mail but also on for instance Wikipedia or on blogposts.  Even if we would have a perfect-solution to test whether [...]]]></description>
			<content:encoded><![CDATA[<p>There is no easy way to distinguish between a human and a spambot.  It&#8217;s an arms race which we&#8217;ll always be behind.  I&#8217;m talking here about spam in more general&#8212;not only on e-mail but also on for instance Wikipedia or on blogposts.  Even if we would have a perfect-solution to test whether there is a human behind something, we still have to combat cheap labour in India:  real people spamming &#8220;by hand&#8221;.</p>
<p>I think the solution is a <a href="http://en.wikipedia.org/wiki/Web_of_Trust">Web of Trust</a> similar to that of PGP.  An identity (not necessarily a person) publishes who she trusts (not to be spammy/phishy) or not trusts.  Ideally everyone would be in one big web.  Only someone who my blog  via-via trusts may post.</p>
<p>Obviously one still may gather trust of people over time and enter the web of trust and then start spamming with that identity.  However, then that identity will be marked untrusted by people and also the people who initially marked the identity as trusted will be less trusted.  Also, there are way more sophisticated measures of establishment in the web/trust to conceive than just being trusted via-via by one identity. </p>
<p>There is no way to prevent spam perfectly, but the amount of work that has to go in to making an identity trusted and established in the web is several orders of magnitude greater than any other protection we have.  The big problem: we don&#8217;t have such an ubiquitous web of trust yet.  (Yes, it&#8217;ll be in <a href="http://blog.w-nz.com/archives/2006/07/01/sinp/">SINP</a> if I&#8217;ll get around to working on it)</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.affien.com/archives/2007/08/14/the-or-at-least-a-better-solution-to-spam/feed/</wfw:commentRss>
		<slash:comments>10</slash:comments>
		</item>
		<item>
		<title>Hashcash 3.2</title>
		<link>http://blog.affien.com/archives/2007/01/03/hashcash-32/</link>
		<comments>http://blog.affien.com/archives/2007/01/03/hashcash-32/#comments</comments>
		<pubDate>Wed, 03 Jan 2007 00:34:32 +0000</pubDate>
		<dc:creator>Bas Westerbaan</dc:creator>
				<category><![CDATA[General]]></category>
		<category><![CDATA[hashcash]]></category>
		<category><![CDATA[spam]]></category>
		<category><![CDATA[wordpress]]></category>

		<guid isPermaLink="false">http://blog.w-nz.com/archives/2007/01/03/hashcash-32/</guid>
		<description><![CDATA[I upgraded to hashcash 3.2. I hope that will stop the new wave of spam I had on this blog. When you&#8217;re upgrading yourself, note that now wp-hashcash resides in its own subdirectory in the plugins folder, I didn&#8217;t notice that and couldn&#8217;t find what was wrong until I noticed the &#8216;/wp-hashcash/&#8217; bit in the [...]]]></description>
			<content:encoded><![CDATA[<p>I upgraded to <a href="http://elliottback.com/wp/archives/2005/10/23/wordpress-hashcash-30-beta/">hashcash 3.2</a>. I hope that will stop the new wave of spam I had on this blog. When you&#8217;re upgrading yourself, note that now wp-hashcash resides in its own subdirectory in the plugins folder, I didn&#8217;t notice that and couldn&#8217;t find what was wrong until I noticed the &#8216;/wp-hashcash/&#8217; bit in the source.</p>
<p>By the way, happy new year!</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.affien.com/archives/2007/01/03/hashcash-32/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Keep your email secure (and what just doesn&#8217;t work)</title>
		<link>http://blog.affien.com/archives/2006/05/21/keep-your-email-secure-and-what-just-doesnt-work/</link>
		<comments>http://blog.affien.com/archives/2006/05/21/keep-your-email-secure-and-what-just-doesnt-work/#comments</comments>
		<pubDate>Sat, 20 May 2006 23:15:26 +0000</pubDate>
		<dc:creator>Bas Westerbaan</dc:creator>
				<category><![CDATA[General]]></category>
		<category><![CDATA[email]]></category>
		<category><![CDATA[secure]]></category>
		<category><![CDATA[spam]]></category>

		<guid isPermaLink="false">http://blog.w-nz.com/archives/2006/05/21/keep-your-email-secure-and-what-just-doesnt-work/</guid>
		<description><![CDATA[The best way to keep your e-mail address secure from evil spam bots is some kind of javascript and obfuscation, which unfortunately isn&#8217;t always available. There are enough alternatives though.
Usually people tend to replace the &#8216;@&#8217; with some short replacement like &#8216;{at}&#8217; or &#8216;bij&#8217;. This just doesn&#8217;t help.
Any programmer with a bit of knowledge of [...]]]></description>
			<content:encoded><![CDATA[<p>The best way to keep your e-mail address secure from evil spam bots is some kind of javascript and obfuscation, which unfortunately isn&#8217;t always available. There are enough alternatives though.</p>
<p>Usually people tend to replace the &#8216;@&#8217; with some short replacement like &#8216;{at}&#8217; or &#8216;bij&#8217;. This just doesn&#8217;t help.</p>
<p>Any programmer with a bit of knowledge of regex can create a program that scans for domain names and interprets every small bit of text in front of it as an @ sign.</p>
<p>Some smarter people also replace the dot. This works, unless your email-host uses a easily recognizable TLD (.com) or domainname (gmail.com).</p>
<p>Also putting &#8216;SPAM&#8217; in your email-adress some.personREMOVETHISFORSPAM@foo.bar is easily filtered.</p>
<p>Best thing is to use something out of the box.</p>
<p>For instance, my email address is X@Y, where:<br />
X = bas.westerbaan<br />
Y = gmail.com<br />
Also I&#8217;ve got an email-address on w-nz.com, namely bas.westerbaan.</p>
<p>Or even maybe w-nz.com@bas.</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.affien.com/archives/2006/05/21/keep-your-email-secure-and-what-just-doesnt-work/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Anonymous comments disabled re-enabled</title>
		<link>http://blog.affien.com/archives/2006/05/19/anonymous-comments-disabled/</link>
		<comments>http://blog.affien.com/archives/2006/05/19/anonymous-comments-disabled/#comments</comments>
		<pubDate>Fri, 19 May 2006 21:09:49 +0000</pubDate>
		<dc:creator>Bas Westerbaan</dc:creator>
				<category><![CDATA[General]]></category>
		<category><![CDATA[comments]]></category>
		<category><![CDATA[spam]]></category>
		<category><![CDATA[wordpress]]></category>

		<guid isPermaLink="false">http://blog.w-nz.com/archives/2006/05/19/comments-disabled/</guid>
		<description><![CDATA[I&#8217;ve disabled anonymous comments for my blog, because my blog is spammed with ~100 spam-comments a day &#8212; it seems they&#8217;ve worked around Hashcash 3.0. I&#8217;ll look into this a bit more when I&#8217;ve got time. Sorry for the inconvenience.
Update Seems it were nasty trackbacks instead of comments. So I just disabled trackbacks. You can [...]]]></description>
			<content:encoded><![CDATA[<p>I&#8217;ve disabled anonymous comments for my blog, because my blog is spammed with ~100 spam-comments a day &#8212; it seems they&#8217;ve worked around <a href="http://elliottback.com/wp/archives/2005/10/23/wordpress-hashcash-30-beta/">Hashcash 3.0</a>. I&#8217;ll look into this a bit more when I&#8217;ve got time. Sorry for the inconvenience.</p>
<p><strong>Update</strong> Seems it were nasty trackbacks instead of comments. So I just disabled trackbacks. You can comment again.</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.affien.com/archives/2006/05/19/anonymous-comments-disabled/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Spam, spam and more spam</title>
		<link>http://blog.affien.com/archives/2005/09/11/spam-spam-and-more-spam/</link>
		<comments>http://blog.affien.com/archives/2005/09/11/spam-spam-and-more-spam/#comments</comments>
		<pubDate>Sun, 11 Sep 2005 10:23:34 +0000</pubDate>
		<dc:creator>Bas Westerbaan</dc:creator>
				<category><![CDATA[General]]></category>
		<category><![CDATA[hashcash]]></category>
		<category><![CDATA[spam]]></category>
		<category><![CDATA[wordpress]]></category>

		<guid isPermaLink="false">http://blog.w-nz.com/archives/2005/09/11/spam-spam-and-more-spam/</guid>
		<description><![CDATA[I noticed I had an enourmous amount of spam in my moderation queue.
The plugin I used to protect myself from spam wp-hashcash, seemed to have been mastered by spammers.
A download of the newest version did the trick.
If anyone experiences problems with posting comments, please mail me.
Update I: Seems some spam prevailed even over this version. [...]]]></description>
			<content:encoded><![CDATA[<p>I noticed I had an enourmous amount of spam in my moderation queue.</p>
<p>The plugin I used to protect myself from spam wp-hashcash, seemed to have been mastered by spammers.</p>
<p>A download of the newest version did the trick.</p>
<p>If anyone experiences problems with posting comments, please <a href="mailto:bas.westerbaan@gmail.com">mail me</a>.</p>
<p><ins>Update I: Seems <em>some</em> spam prevailed even over this version. I&#8217;d better get to making my own custom changes to wp-hashcsah.</ins></p>
<p><ins>Update II: I changed the secret codes in the plugin. And I broke it for a while. Either one of those could have resulted in the fortunate (hopefully not temporarilly) stop of spam.</ins></p>
<p><ins>Update III: According to Elliot Back, the creator of hashcash, the spammers bruteforce the secret value. Changing it usually is efficient enough to keep them at bay for a while. He&#8217;s working on a newer version which features bigger, thus harder to bruteforce values. I just hope they won&#8217;t suck my bandwidth <strong>too</strong> much.</ins></p>
<p><ins>Update IV: Unfortunately there seems to be a lot of computing power or a hack behind the breaking of the hashcash security -_-, I keep getting spam :-/</ins></p>
]]></content:encoded>
			<wfw:commentRss>http://blog.affien.com/archives/2005/09/11/spam-spam-and-more-spam/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>rel=&#8221;nofollow&#8221;</title>
		<link>http://blog.affien.com/archives/2005/07/02/relnofollow/</link>
		<comments>http://blog.affien.com/archives/2005/07/02/relnofollow/#comments</comments>
		<pubDate>Sat, 02 Jul 2005 21:51:07 +0000</pubDate>
		<dc:creator>Bas Westerbaan</dc:creator>
				<category><![CDATA[Computer Science]]></category>
		<category><![CDATA[rel-nofollow]]></category>
		<category><![CDATA[spam]]></category>

		<guid isPermaLink="false">http://blog.w-nz.com/archives/2005/07/02/relnofollow/</guid>
		<description><![CDATA[Quite some time ago google started honouring the rel="nofollow" attribute value pair in a html tags, which should prevent spammers from gaining a high page rank by spamming blogs with comments.
It is useless.
Spamming costs almost nothing, if there is a slightest amount of gain in it for the spammers they will keep doing it. Of [...]]]></description>
			<content:encoded><![CDATA[<p>Quite some time ago google started honouring the <code>rel="nofollow"</code> attribute value pair in <code>a</code> html tags, which should prevent spammers from gaining a high page rank by spamming blogs with comments.</p>
<p>It is useless.</p>
<p>Spamming costs almost nothing, if there is a slightest amount of gain in it for the spammers they will keep doing it. Of all those hundred thousands of people visiting blogs and seeing comment spam a few will still follow the link, those few are enough for the spammers.</p>
<p>One could argue that the websites the comment spam point to now haven&#8217;t got a really high pagerank anymore. This is only partially true, for only a selective amount of people install the code to add the <code>rel="nofollow"</code> attribute in links that can be spammed. Even though the highest ranking blogs have already installed it, the tons of small blogs are still enough to raise the page rank enourmously.</p>
<p>In my opinion search engines should just ignore links which are considered spam.</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.affien.com/archives/2005/07/02/relnofollow/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>Bye Bye Spam</title>
		<link>http://blog.affien.com/archives/2005/06/25/bye-bye-spam/</link>
		<comments>http://blog.affien.com/archives/2005/06/25/bye-bye-spam/#comments</comments>
		<pubDate>Sat, 25 Jun 2005 22:19:54 +0000</pubDate>
		<dc:creator>Bas Westerbaan</dc:creator>
				<category><![CDATA[General]]></category>
		<category><![CDATA[hashcash]]></category>
		<category><![CDATA[spam]]></category>
		<category><![CDATA[wordpress]]></category>

		<guid isPermaLink="false">http://blog.w-nz.com/archives/2005/06/25/bye-bye-spam/</guid>
		<description><![CDATA[I just installed Hash Cash, which is an anti spam plugin for Wordpress.
Hash Cash protects this blog from spam by requiring the client to execute javascript which calculates a checksum of the content from a seed which is very hard to extract.
Since I installed it I haven&#8217;t got any spam comments  .
The downside is [...]]]></description>
			<content:encoded><![CDATA[<p>I just installed <a href="http://elliottback.com/wp/archives/2005/05/11/wordpress-hashcash-20/">Hash Cash</a>, which is an anti spam plugin for Wordpress.</p>
<p><em>Hash Cash</em> protects this blog from spam by requiring the client to execute javascript which calculates a checksum of the content from a seed which is very hard to extract.</p>
<p>Since I installed it I haven&#8217;t got any spam comments <img src='http://blog.affien.com/wp-includes/images/smilies/icon_smile.gif' alt=':-)' class='wp-smiley' /> .</p>
<p>The downside is that it disallows anyone who hasn&#8217;t got a javascript enabled browser to post a comment.</p>
<p><ins>Now I still need to get some good means to combat trackback spam. Just putting them under moderation isn&#8217;t good enough for they keep coming</ins></p>
]]></content:encoded>
			<wfw:commentRss>http://blog.affien.com/archives/2005/06/25/bye-bye-spam/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>Beating Spam</title>
		<link>http://blog.affien.com/archives/2005/03/11/beating-spam/</link>
		<comments>http://blog.affien.com/archives/2005/03/11/beating-spam/#comments</comments>
		<pubDate>Fri, 11 Mar 2005 21:46:46 +0000</pubDate>
		<dc:creator>Bas Westerbaan</dc:creator>
				<category><![CDATA[Computer Science]]></category>
		<category><![CDATA[spam]]></category>

		<guid isPermaLink="false">http://blog.w-nz.com/archives/2005/03/11/beating-spam/</guid>
		<description><![CDATA[Most mail clients now include spam filters, which are learning and improving themselves. 
The problem though is that when spam keeps getting smarter your program has got too which still means reporting half of your spam mail as spam and checking your spam mail for your regular mail. Also when you start again after a [...]]]></description>
			<content:encoded><![CDATA[<p>Most mail clients now include spam filters, which are learning and improving themselves. </p>
<p>The problem though is that when spam keeps getting smarter your program has got too which still means reporting half of your spam mail as spam and checking your spam mail for your regular mail. Also when you start again after a reinstall and the spam filter has lost its experience you got to start over again.</p>
<p>Now, I guess it would be great to create a centralized independant organization specificly to regognize (and when it becomes successfull also extract the spammers for prosecution) spam.</p>
<p>The problem is how to organize such a centralized system, for when someone receives a spam email it has got to check with the centralized server whether the spam is spam. The amounts of spam are huge and doubling the enourmous bandwidth and cpu spam has costed already isn&#8217;t a very pleasant foresight.</p>
<p>It would be feasable however to create a spam regognition service to run on a clients computer which updates itself with the latest definitions once in a while. This would undoubtly be way more efficient.</p>
<p>The only problem that we are left with is how to get such a system to be intergrated with existing applications, if no one uses it it would be rather useless.</p>
<p>When you have some idea`s on this, please share them.</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.affien.com/archives/2005/03/11/beating-spam/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Strange spam</title>
		<link>http://blog.affien.com/archives/2005/03/01/strange-spam/</link>
		<comments>http://blog.affien.com/archives/2005/03/01/strange-spam/#comments</comments>
		<pubDate>Tue, 01 Mar 2005 21:54:49 +0000</pubDate>
		<dc:creator>Bas Westerbaan</dc:creator>
				<category><![CDATA[General]]></category>
		<category><![CDATA[comment]]></category>
		<category><![CDATA[spam]]></category>
		<category><![CDATA[strange]]></category>
		<category><![CDATA[wordpress]]></category>

		<guid isPermaLink="false">http://blog.w-nz.com/archives/2005/03/01/strange-spam/</guid>
		<description><![CDATA[The last few days this blog has been under heavy attack of comment spam. Although the excellent wordpress filters have put all of it in the moderation queue it still is quite some work so sift out any comments that actually are of a real person.
The odd thing I noticed out of curiousity  is [...]]]></description>
			<content:encoded><![CDATA[<p>The last few days this blog has been under heavy attack of comment spam. Although the excellent wordpress filters have put all of it in the moderation queue it still is quite some work so sift out any comments that actually are of a real person.</p>
<p>The odd thing I noticed out of curiousity  is that the links don&#8217;t even seem to work on more than half of all the spam comments. They are basicly flooding you with for them hopefully tempting comments and if someone finaly has been tempted enough to click one it doesn&#8217;t work!</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.affien.com/archives/2005/03/01/strange-spam/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>Chain emails suck &amp; Asia</title>
		<link>http://blog.affien.com/archives/2005/01/10/chain-emails-suck-asia/</link>
		<comments>http://blog.affien.com/archives/2005/01/10/chain-emails-suck-asia/#comments</comments>
		<pubDate>Mon, 10 Jan 2005 19:01:58 +0000</pubDate>
		<dc:creator>Bas Westerbaan</dc:creator>
				<category><![CDATA[General]]></category>
		<category><![CDATA[chain email]]></category>
		<category><![CDATA[spam]]></category>

		<guid isPermaLink="false">http://blog.w-nz.com/archives/2005/01/10/chain-emails-suck-asia/</guid>
		<description><![CDATA[I have received 5 chain emails in my mailbox today claiming that when I forward it to a douzen other people putting my name in it would help the victims of the tsunami in asia.
How? How can miljons of emails help those who most of them haven&#8217;t got computers (anymore, or never had) to receive [...]]]></description>
			<content:encoded><![CDATA[<p>I have received 5 chain emails in my mailbox today claiming that when I forward it to a douzen other people putting my name in it would help the victims of the tsunami in asia.<br />
How? How can miljons of emails help those who most of them haven&#8217;t got computers (anymore, or never had) to receive email!</p>
<p>Usualy people forward one email to 10 others at least, the count on most emails I received was 400. So lets assume that every forwards the email 10 times, and this continues for 400 times:</p>
<p><code>10 ** 400 == 1e400</code></p>
<p>That are actually more emails than people in the world, usualy people get the same mail back from someone else later in the chain.</p>
<p>Lets assume that 500 miljon people receive a certain chain mail Ã  100 KB bandwidth for the sender and receiver combined.</p>
<p>That makes 500 milj times 100 KB is 50 TB..</p>
<p>1 Gig usualy costs a provider lets say 5 cents: 5 cents times 50 TB is $2500.</p>
<p>If we would just don&#8217;t forward chain mails but all send a simple postcard to asia we would let <strong>them</strong> show we care and we would save $2500 for the mail providers who will lower prises, which will result in more money for users which eventually results in more money for the world economy including asia!</p>
<p><strong>Never forward a chain mail</strong></p>
<p>I would like to use this moment to say I am shocked by the tsunami in Asia and I do care for the miljons over there, I hope this single post will convince at least one person to stop forwarding mails, that would save an average of about $100 over some time, my donation for them.</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.affien.com/archives/2005/01/10/chain-emails-suck-asia/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
	</channel>
</rss>
