photog.social is one of the many independent Mastodon servers you can use to participate in the fediverse.
A place for your photos and banter. Photog first is our motto Please refer to the site rules before posting.

Administered by:

Server stats:

239
active users

#spam

25 posts23 participants5 posts today

Following up on previous, the LinkedIn discussion revealed that there are people who have not heard about greylisting.

So here is my 2012 piece with updates, "In The Name Of Sane Email: Setting Up OpenBSD's spamd(8) With Secondary MXes In Play - A Full Recipe" nxdomain.no/~peter/in_the_name

#spamd #antispam #spamd.conf #OpenBSD #blocklists #blacklists #greytrapping #greylisting #spam

nxdomain.noIn The Name Of Sane Email: Setting Up OpenBSD's spamd(8) With Secondary MXes In Play - A Full Recipe

#NerdTalk Wow. A multi-step, sophisticated way of spoofing emails that pass SPF, DKIM, DMARC. Hardcore.

"And most importantly, the key trick is that you can put anything you want in the App Name field in Google"

Le sigh. That's where they put the email text. In the App Name field. Google can fix this by sanitising input better.

easydmarc.com/blog/google-spoo

EasyDMARC · Google Spoofed Via DKIM Replay Attack: A Technical BreakdownLearn how a Google spoof used a DKIM replay attack to bypass email security and trick users with a fake subpoena in this real-world phishing case.

The wave of phishing spam is continuing. Please in addition of reporting the account on your instance, also report them on:
- safebrowsing.google.com/safebr so they get blocked by browsers
- cloudflare.com/en-ca/trust-hub so they get blocked by CloudFlare (most of them are using Cloudflare)
Eventually the hassle won't be worth it and they'll move along.
#mastodon #spam #phishing

safebrowsing.google.comReport a Phishing Page

I don’t care what political org you’re with. You text me uninvited and I will report you as junk. NONE of them ever asked my permission or respect my wishes to not receive that BS and they all exploit the non-profit/changing phone numbers they’re texting from every 5 minutes loop hole way too hard. #USPol #Texting #Spam

Neue Spam-Variante: Man bekommt eine E-Mail mit einer Termin-Einladung via Google Calendar für ein „Meeting“ auf WhatsApp von einer unbekannten Person für denselben Tag, dafür ohne Uhrzeit. Darin heißt es:

„Please contact us on whats app +48 xxx xxx xxx We would like to get a bit more information about what you provide, because we are interested in long term and we can order a lot“

Die Nummer hab ich unkenntlich gemacht; die Vorwahl ist die von Polen.

EDIT: Ich vergaß zu erwähnen, daß sogar eine ICS-Datei angehängt ist, damit man's direkt in seinen eigenen Kalender in Thunderbird oder Google übernehmen kann oder sogar automatisch eingefügt wird.

As a moderator: Thank you to everyone reporting the fake "you need to verify your account" posts flying around Mastodon, supposedly from a Mastodon Support Team; this lets us suspend the spammers as quickly as possible.

And wow, there are a lot today. I suspended two while sitting in my dentist's parking lot after just a one-hour appointment for a cleaning. And then one more when I got home after a one-hour drive.

Success! Mastodon found the person. Thank you!

I am looking for someone from #italy that used the online handle Lex Tutor from at least 2010-2019. Lex hates #spam and was very vocal about spam groups.

If the #mastodon community can help me find the real person, I would be grateful..

Lex had insights into criminals that we are hunting today.. and I would love to interview them.

Appreciate the boosts to see if the Kevin Bacon game will work.