Finally, Payback Time for Spammers

Wouldn't it be great revenge to hit spammers who fill up your email inbox with those messages touting low-interest mortgage loans and male enhancement drugs right where they live -- on their Web sites?

You can, according to a paper published by researchers at the University of California, San Diego. While thousands of servers deliver those unwanted solicitations and phishing scams to your inbox, only one Web server typically hosts the site that a user is directed to if they respond to the email, the researchers found.

That means, "'a single takedown of a scam server or a spammer redirect can curtail the earning potential of an entire spam campaign,' write the UCSD computer scientists in their paper accepted for publication at USENIX Security 2007 conference," according to an article posted by USCD.

"'The availability of scam infrastructure is critical to spam profitability. Our findings suggest that the current scam infrastructure is particularly vulnerable to common blocking techniques such as blacklisting,' said Geoff Voelker, a computer science and engineering professor at the UCSD Jacobs School involved in the study."

The researchers found that 94 percent of all email scams advertise through an embedded link that is hosted on a single Web server. "Using their new 'spamscatter' approach, the computer scientists studied over 1 million spam messages from a live feed (all the messages sent, over the course of a week, to any email address at a four-letter top-level domain that has no active email accounts). Spamscatter allows researchers to mine emails, identify URLs in real time and follow these links through any redirection mechanisms and on to the Web page on the destination server," according to the article.

Any reduction in spam not only would make individuals' lives easier to manage, it would help clear the clogged pipes carrying Internet traffic, increasing performance. Studies indicate that 80 percent of all Internet email traffic is spam. Some studies indicate spam traffic accounts for as much as 90 percent of all email traffic.

Determining what, exactly, constitutes a spam site versus someone exercising free commerce and freedom of speech could be the next round. But until then, we can hope this approach can slow down the deluge of email spam.

The researchers will present the peer-reviewed paper Aug. 9 in Boston, at the USENIX Security 2007 conference.

I predict a standing-room-only crowd.

NEXT STORY: Gov. Perdue Knows IT