• Home
  • Insights
    • About Customer Insight
    • Ad Hoc Poll Results
    • Customer Insight
    • Green
    • Musings
    • Research Statistics
    • Top Performers
    • 495
    • RSS Feeds
  • Mobile UC
    • Mobile UC Business
    • Mobile UC Observations
    • Mobile UC Product Reviews
    • Mobile UC Service Reviews
    • Mobile UC Applications Reviews
    • Mobile UC Devices Reviews
  • Coms
    • IP Video
      • Video Conferencing Consultants
      • Telepresence Consultants
      • Video Conferencing Strategy
    • Applications
    • E911
    • Email
    • LANs & WANs
    • Messaging
    • Quality
    • Security
    • SIP
    • VoIP
    • VoIP History
  • Scores
  • Reports
    • Register?
      • Be Heard. Join our Panel.
      • Prize Winners Do Surveys
      • Unregister
    • Research Catalogs
    • Recovery Series
    • Collaboration
      • Exchange Review
    • Fundamentals
    • Messaging
    • Mobile UC
      • Alcatel-Lucent Users
      • Avaya Users
      • Cisco Users
      • Nortel Users
      • Product Manager's Guide
      • Siemens Users
    • Web 2.0
    • Pre-2007 Research
    • Comments
    • Brainshark Content Network
  • About
    • About Peter Brockmann
    • Contact Us
    • News
    • In the News...
    • Request a User Briefing
    • Request a Vendor Briefing
    • Full Disclosure Notice
    • Famous Brockmann's
  • David
Coms Email How Do Spammers Get Email Addresses?

How Do Spammers Get Email Addresses?

Wednesday, 15 August 2007 06:54 Written by Peter Brockmann
User Rating: / 7
PoorBest 

To get legitimate send-to addresses, spammers and sometimes legitimate email marketers rely on some or all of these techniques:

Dictionary attacks - spambots send email to all the most popular or all the known firstname (at) company.com where company is a legitimate domain in a DNS lookup. Of course, many of these messages end up as undeliverable bounces, which may result in messages sent to a legitimate, but forged send-from address.

Automated address harvesting techniques such as trawlers that scour the newslists, blogs and websites for any character string containing the @ symbol. This is why info (at) company.com or sales (at) company.com are big targets.

Database attacks - for the longest time, simply being in the WhoIs database (the database containing the administrative and technical contacts for every domain in the world) made your address a prime spam target. It took a while, but thanks to Carnegie-Mellon University and their CAPTCHA technology, only humans can access that database, one record at a time.

Poor email privacy hygiene at legitimate companies - in the normal course of doing business, people sign up to participate in an event, download some software or a document, and their email address is embedded in some XL file that over time falls into the hands of an employee who, as a pack rat keeps everything and when they leave the company, so does the email file.

Websites that sell their contact lists - sometimes people sell their lists, or lists within their control to sites and services that use the list in marketing programs. In this way an email address can be sold, and resold and resold without their knowledge. Unfortunately, in this circumstance, unsubscribing from one is not the same as unsubscribing from another marketer.

Did we miss any? Let us know.

In upcoming posts, we'll provide some best practices to avoid being impacted as an email marketer and as a email address owner. 

< Prev   Next >

Add comment


Security code
Refresh

Send
Cancel
JComments

Respondents have 10% more video conferences with coworkers or higherups than with customers.

The Perfect Storm

Login

  • Forgot your password?
  • Forgot your username?
Follow us on Twitter

Posts: All-Time Highest Rated

  • Why Register?
  • Guest Blog: Convincing Business Leaders About The Green Value of Their Low-Carbon Products
  • Internet on Us
  • 10 Most Popular Blog Entries of 2009
  • Brockmann Guest Blogs for No Jitter
  • Cisco Cius
  • Swatting Is a New Dangerous Sport
  • Cost Saving Strategies: Why Video Managed Services?
  • Identity Thieves Masquerade as Job Sites
  • Video Conferencing Consultants

Posts: Year's Most Popular

  • Why Register?
  • Mobile Apps Are Addictive
  • Now, I Have Seen It All
  • Taxes and Telecommuting
  • Breaking News - Avaya to IPO
  • Android Users Suffer Security Problems
  • Google Removes More Mal-Apps
  • Innovations in Screen Technologies
  • Applying Email Marketing Features to Personal Email
  • Where Have I Been?

Reports: All-Time Most Popular

  • Forums in Small Companies
  • Forums in Large Companies
  • The Problem With Email
  • Video Communications 2.0: Tips for Improving The Experience
  • The Manager's Recession Survival Guide video

Reports: Year's Most Popular

(c) Brockmann & Company 2002-2011 Scroll To Top