On 16/03/11 9:54 AM, MFPA wrote:
> On Monday 14 March 2011 at 1:06:26 AM, in
> <mid:4d7d6a12....@adversary.org>, Ben McGinnes wrote:
> 
>> Anyway, out of curiosity, did you ever receive spam by that address
>> and prove it had been harvested from the keyservers?  I still think
>> harvesting addresses from the keyservers is too much effort for
>> spammers, who mostly generate the target addresses, but it would be
>> nice to finally answer that question.
> 
> No mail received at all on that address so far. That key has only
> been up just over a year.

I think that if spammers were harvesting addresses from the keyservers
then you would have received some by now.

I don't think they bother because:

a) The effort required to harvest the addresses would be better spent
elsewhere and most, if not all, spammers are lazy.

b) It would be easier to just generate usernames at a target domain
name than to work from a large list (these days).

c) It is more likely that OpenPGP users are going to include people
who will hunt down spammers and get their upstream providers to
disconnect them.

> Up until now, if I received any mail on that address, the address
> could only have been harvested from a keyserver (or randomly
> matched). Going forward, if I receive any mail on that address it
> was probably harvested from the mailing list archive.

That would be likely.


Regards,
Ben

Attachment: signature.asc
Description: OpenPGP digital signature

_______________________________________________
Gnupg-users mailing list
Gnupg-users@gnupg.org
http://lists.gnupg.org/mailman/listinfo/gnupg-users

Reply via email to