The Washington Times
  • Subscribe
  • Times News Services
  • RSS
  • Mobile Headlines
  • e-edition
  • E-MAIL ALERTS
  • REGISTER
  • LOG IN
  • E-MAIL ALERTS
  • WELCOME
  • Your Profile
  • Log Out
  • Front Page Image
  • Classifieds
  • Autos
  • Real Estate
  • Jobs
  • Special Sections
  • Customer Service
  • Home
  • News
  • Opinion
  • Sports
    • NFL
    • NBA/WNBA
    • MLB
    • NHL
    • Tennis
    • Golf
    • Motorsports
    • Soccer
    • NCAA
    • Olympics
    • Outdoors
    • Other
  • Culture
    • Home & Living
    • Family & Kids
    • Fashion
    • Food
    • Travel
    • Health
    • Washington Visitors
    • Books
    • Military History
    • Life
    • Auto
    • TV Listings
    • Movie Listings
    • Death Notices
    • Entertainment
  • Themes
  • Communities
  • Marketplace
    • Autos
    • Jobs
    • Real Estate
    • Classifieds
    • Shopping
    • Dining Out
    • Education
    • TWT Store
  • Videos
    • Two Guys
    • Birnbaum on Washington
    • Liz Glover
    • Amanda Carpenter
    • Morning Briefing
    • Documentaries
    • Joe Giganti
    • Video Game Minute
  • Podcasts
    • About Headlines
    • Audio and Radio
    • America's Morning News
  • National

    HOLMES: Miscalculating engagement

  • National

    NORRIS: The Senate and the START treaty

  • National

    Obama: U.S. 'forever grateful' to veterans

  • Business

    Employers pitch in on pet health care

  • World

    Jordanian sees Jerusalem as a powder keg

  • World

    Report finds dirty money, water in China

  • Politics

    Silicon Valley executives take up politics

Wednesday, May 5, 2004

Spammers turn to 'dictionary attacks'

Rate this story

Average 0.00
after 0 votes
Login or register to rate this story

  • Font Size -+
  • Print
  • Email
  • Comment
  • Tweet this!
  • Share
  • Article
  • Comments ()
  • Click-2-Listen
  • Videos

More Stories

  • Swift wins entertainer of year award
  • TWT reporter recounts sniper's last moments
  • Obama wants Afghan war exit plan clarified
  • Dobbs leaves CNN before contract ends

By

Spammers are increasingly flooding Internet providers and corporate servers with messages designed to uncover valid e-mail addresses, creating additional hassle and expense for technology administrators.

In an aggressive move to find customers to buy their products, senders of unwanted e-mail advertisements, or spam, have resorted to staging "dictionary attacks," sending hundreds of messages to random addresses in the hopes that a fraction of those addresses are active.

The attacks, which have nearly doubled since the fall, can slow corporate e-mail systems and lead many companies to spend extra on servers and bandwidth.

Postini, a Redwood City, Calif. company that filters e-mail for corporations, said it handled an average of 189 attacks per customer each day in April, up from a daily average of 103 attacks for each customer six months earlier.

In a dictionary attack -- also known as a "brute force" or "direct harvesting" attack -- spammers will send blank messages to more than 100 addresses, usually with the same domain name. In many cases, the spammer will use a software program to conjure any possible names and guess at e-mail addresses based on the names. If an e-mail is not returned to them after it is sent, the spammer knows that the address is probably valid.

In April, each attack discovered by Postini included an average of 218 messages, for a total of more than 40,000 messages per customer, per day.

"It's just the spammers trying to find yet another way to find valid e-mail address to send their messages to," said Andrew Lochart, Postini's director of product marketing. "They're just trying everything."

Dictionary attacks are a major burden to corporate e-mail systems, Mr. Lochart said, because companies usually process nearly all the messages sent to them. Even those sent to invalid addresses often are held before being returned to the sender.

"A lot of e-mail administrators don't realize this is a silent killer that is stealing resources," Mr. Lochart said. "It's as much as a third of the e-mail traffic out there. That's a big deal."

In some cases, the amount of e-mail from a dictionary attack outnumbers the amount of legitimate e-mail sent to an organization.

Lewis University in Chicago, for instance, received 7,000 e-mail messages one day this week, but it also was sent 20,000 messages to addresses that did not exist, according to Fortress Systems, a District-based firm that filters the university's e-mail.

Some e-mail filtering companies, including Postini, have learned to block all e-mail they think is part of a dictionary attack by recognizing the high volume of messages coming from one source. But spammers have become more clever by decreasing the amount of e-mail sent in each attack, but increasing the number of attacks overall.

Dictionary attacks have become more common, as other tricks to locate valid e-mail addresses have lost effectiveness. Spammers are still most likely to find valid e-mail addresses by using software to scan the Internet for addresses posted online, but consumers have gradually learned not to publicize their addresses in such a way. And e-mail users also are less likely than before to sign up for a mailing list unless they know that their address will not end up in the hands of a spammer.

Post a comment

There are comments on this article, submit your opinion!

Commenting is disabled for this entry.
If you feel there is still something worth mentioning about this entry please contact the author or the site admin.

Ask a Question

You Report

Do you have another point of view, photos, audio, video or more information about a story?

Top Stories

Most Read

  1. KELLNER: New Apple mouse really is 'Magic'
  2. EXCLUSIVE: Warner: Obama misplayed health care debate
  3. D.C. sniper executed in Virginia
  4. Airport rules changed after Ron Paul aide detained
  5. PRUDEN: Fatal reluctance to see evil
More Top Stories »
  1. Families meet as sniper's execution nears
  2. Michigan farm expert opens Marijuana U.
  3. DeMint tries to ban 'permanent politicians'
  4. High court refuses to halt sniper execution
  5. Kennedy's disability plan could snag health bill

Most Shared

  1. KELLNER: New Apple mouse really is 'Magic'
  2. Michigan farm expert opens Marijuana U.
  3. EDITORIAL: End Clinton-era military base gun ban
  4. PRUDEN: Fatal reluctance to see evil
  5. Airport rules changed after Ron Paul aide detained
More Top Stories »
  1. DeMint tries to ban 'permanent politicians'
  2. Kennedy's disability plan could snag health bill
  3. D.C. sniper executed in Virginia
  4. EXCLUSIVE: Warner: Obama misplayed health care debate
  5. Peace Corps' popularity jumps

Most Commented

  1. PRUDEN: Fatal reluctance to see evil
  2. DeMint tries to ban 'permanent politicians'
  3. Obama: 'No faith justifies' Fort Hood attack
  4. 'Fuzzy math' could drive health bill cost higher
  5. Kennedy's disability plan could snag health bill
More Top Stories »
  1. D.C. sniper executed in Virginia
  2. Defense nominee won't reveal potential conflicts
  3. EXCLUSIVE: GOPer Cao: Health vote may end career
  4. Airport rules changed after Ron Paul aide detained
  5. Michigan farm expert opens Marijuana U.

Listen to Washington Times Radio

  • America's Morning News

    with John McCaslin and Melanie Morgan

Blogs & Columns

  • POTUS Notes

    New Dem talking point on Obama approval doesn't wash

  • The Back Story

    12 arrested at Pelosi's office

  • Belief Blog

    New Vatican constitution released

  • Out of Context

    Foods that might kill libido

  • Technology

    Facebook wins round against phishing spammer

  • On the Fly

    United lifts some 'award' blocking

  • Redskins 360

    Veterans visit Redskins

  • Tara's Two Cents

    On their way to summer vacation..

  • SNOBlog

    Beyond 'Woody'

Videos

Advertising Links
TWT Store
  • e-edition
  • Print Edition
  • Weekly Washington Times
TWT Affiliates
  • Middle East Times
  • Golf
  • UPI
  • Arbor Ballroom
  • Washington Times Global
  • About TWT
  • Press Room
  • F.A.Q.
  • Work for TWT
  • Advertise
  • Sponsors
  • Contact Us
  • Privacy Policy
  • Site Map

All site contents © Copyright 2009 The Washington Times, LLC.