The spam is out, but the viruses are in
Posted on 3 Mar 2009 at 17:50
This month, Steve Cassidy offers his take on spam, and finds that version 2 of VMware doesn't live up to first appearances.
"If you get into trouble so much, doesn't that mean you must enjoy it?" This little gem is the network person's equivalent of "Does my bum look big in this?", or "Have you stopped beating your wife yet?" as no-win conversational gambit. For some uncomfortable reason, Christmas 2008 has caused me to start believing that letting my "I'm here to help" sign show is no longer such a smart idea... First off, there were my own network woes, but immediately after that came all that folderol surrounding the closure of the world's largest spamhaus (see www.pcpro.co.uk/links/174networks for the lowdown from the local newspaper) as detailed last month by fellow RWC columnist Davey Winder.
By cutting off McColo, a Californian ISP, two of its upstream bandwidth providers slashed the world's volume of unsolicited email messages, that is spam, at a single stroke. Hats off then, temporarily, to both Hurricane Electric and Global Crossing. But I stress that "temporarily"- let's remember that what they shut down was a relationship that had been running for some considerable time, a relationship so stable and so bandwidth-hungry that once it was cut off we were instantly transported to a whole new world of email. This world saw an appreciable reduction in the volume of spam reaching individuals - which may not impress you at first hearing, but reflect on just how many people are using the internet. Even if you assume an unfair bias on the part of the spammers towards the Roman-alphabet (and possibly the English-speaking) worlds, the count of "internet users" who meet those descriptions are alleged to total some 430.8 million, according to http://www.internetworldstats.com/stats7.htm. Starting from that figure, several billion spam messages per day would be a fair estimate of the output of the spammers' collective. For the cutoff of McColo to be showing an effect in my mailboxes, it must have been generating a veritable hurricane of spam over a very long period of time.
But talking about the global security implications of spam is definitely Mr Winder's bailiwick, and I need to perform a right-angled turn in my narrative here to arrive at this month's network hassle. The first hassle arises from the fact that people have become blas?© about spam: they sneer at the stupid mis-spellings, the fake offers, the bizarre sexual feats, and only very infrequently (I'd guess around four incidents per person per year) do they actually believe that a spammed stock tip is worth following, or feel tempted to use that handy link to check their online banking password. Feel free here to make tutting noises and the usual laugh-at-the-chumps reaction, but try to keep that humungously large number back in mind. Nobody sends out billions of messages per day for trivial returns, or for a bit of a jape: that relationship with those two first-rank bandwidth providers existed to shovel a lot of data out and rake a whole lot of money back in. So it was absolutely no surprise to me to discover that as the McColo-related email traffic faded away during the last few weeks of 2008, the virus traffic rose to take its place.
Once again, the attitude to virus detection and avoidance among the general population (and even among much of the specialist population of techies, too) veers between sloppy and irrational. Let's lay down some very basic ground rules:
Download a year of Steve Cassidy's Networks columns by heading to our Free Downloads site
From around the web
advertisement
- Paying for your crimes with Bitcoin
- Pavement hacking: What it is and how to avoid it
- Google's risky pre-loaded pages
- Mac under attack: how secure is Apple's OS?
- Has your browser been hijacked?
- Can you send a truly anonymous email?
- Is it safe to send bank details over email?
- Sainsbury's Bank bans password storage
- MobileMe triggers credit card blocks
- How to stay safe against session hijacking
- Chrome's shine getting lost in translation
- BytePac: the cardboard hard disk enclosure
- How tech loosens our grip on reality
- Hokum watch: Safer Internet Day
- Why I'm deleting Adobe from my PC
- Prepare to be patronised: it's Safer Internet Day
- Dear Sony, Samsung and every other tech company in the world: stop trying to be Apple
- Will Apple's Final Cut Pro X update placate the pros?
- Smartr Contacts for iPhone review
- Switching to Office 365's Outlook Web App
- Symantec: we didn't "bribe" hackers, police did
- Tesco Bank customers targeted by fake Twitter account
- VeriSign slammed for security breach cover-up
- MPs attack Government scare tactics on cybercrime
- Symantec tells customers to disable pcAnywhere
- O2 apologises as it plugs phone number leak
- Hacking contest focuses on patching rather than speed
- McAfee warns of flaw in own security software
- Israel suffers multiple hack attacks
- F-Secure: Android adverts pose security risk
advertisement

