On Mon, 3 Oct 2016, Axb wrote:
On 10/03/2016 07:46 PM, Alex wrote:
Hi,
These are a real concern. If you receive any kind of real mail volume,
you're receiving these too, and they're not always being caught by
RBLs or virus scanners. Or even our well-trained bayes.
http://pastebin.com/YhLBqpKm
I used to have some rules that would reliably block them, but they're
not performing well now at all.
I'm posting this in hopes someone has some other ideas, as well as to
raise awareness about their existence.
Ideas greatly appreciated.
SA isn't the right tool to detect virus infected attachments
Agreed, but *phishing* PDFs are appropriate to detect, as are 419 scam
PDFs (which I am starting to see).
--
John Hardin KA7OHZ http://www.impsec.org/~jhardin/
jhar...@impsec.org FALaholic #11174 pgpk -a jhar...@impsec.org
key: 0xB8732E79 -- 2D8C 34F4 6411 F507 136C AF76 D822 E6E6 B873 2E79
-----------------------------------------------------------------------
The philosophy of gun control: Teenagers are roaring through
town at 90MPH, where the speed limit is 25. Your solution is to
lower the speed limit to 20. -- Sam Cohen
-----------------------------------------------------------------------
286 days since the first successful real return to launch site (SpaceX)