Please wait while the page is being loaded Skip this advertisement >
ARN

Rise in Gmail spam indicates more solved CAPTCHAs

Spam originating from Google's Gmail domain doubled last month, indicating that spammers are still successfully defeating the CAPTCHA security .
Jeremy Kirk (IDG News Service)  11 March, 2008 07:07:13

Spam originating from Google's Gmail domain doubled last month, indicating that spammers are still defeating the CAPTCHA, the distorted text used as a security test to thwart mass registration of e-mail accounts and other Web site abuse.

Gmail spam went from 1.3 per cent of all spam e-mail to 2.6 per cent in February, according to data released by e-mail security vendor MessageLabs on Monday.

The new statistics are another nail in the coffin for CAPTCHA, which stands for Completely Automated Public Turing test to tell Computers and Humans Apart.

Google is the latest free Web mail provider to be victimized by spammers' efforts to create software to solve the codes, or at times, also employ people to solve the codes en masse.

"It's only a matter of time before [CAPTCHAs] are comprehensively defeated," said Paul Wood, senior analyst at MessageLabs.

Last month, security vendor Websense ascertained that spammers were using two hosts to crack Gmail's CAPTCHAs. The method appeared to be successful only 20 per cent of the time. But if the procedure is repeated thousands of times, many new accounts can be generated and used to send spam.

Most of the messages use links and images to advertise adult entertainment sites, Wood said.

While other spammy domains can simply be blocked by antispam software, businesses are reluctant to cut off the domains of free Web mail providers because of their legitimate use, he said. Spam from Web mail providers comprises 4.2 per cent of all spam.

Google's CAPTCHA system is considered hard to crack, but so was Yahoo's, which is also regularly beaten. MessageLabs said 88.7 per cent of the spam from free Web mail providers comes from Yahoo's domains.

Microsoft's CAPTCHA, used for registering accounts on its Windows Live Mail service, has also been cracked. Websense believes the same group of spammers are responsible for breaking both Google and Microsoft's system.

Wood said MessageLabs provides Google as well as other companies with data that helps fight spam. Google could not be reached for comment.

MessageLabs sells a security service to companies, filtering e-mail before passing it to their 17,000 customers. Per day, the company snags 2.5 billion spam messages from a total of more than 3 billion messages.

Comments

Post new comment

Users posting comments agree to the ARN comments policy.
Login or register to link comments to your user profile, or you may also post a comment without being logged in.
The content of this field is kept private and will not be shown publicly.
Enter the fully qualified URL, eg. http://www.example.com/
  • Web page addresses and e-mail addresses turn into links automatically.
  • Allowed HTML tags: <a> <em> <strong> <cite> <code> <ul> <ol> <li> <dl> <dt> <dd>
  • Lines and paragraphs break automatically.

More information about formatting options

Syndicate content
 
ARN Vendor Directory
ARN Community Comments
ARN Library

How to Beef Up Your Sales Pipeline

Our economy may be heading towards a recession. Sales rates are dropping. Promotional campaigns are proving less effective than you would like. So how do you continue to grow your business and bring home the sales in such an environment? Download this white paper now to find the answers.

Subscribe to ARN

ARN has been the premier provider of information to the Australian IT channel for more than 12 years. As the only weekly publication dedicated to the channel, ARN produces timely, accurate news and analysis about IT business issues, products and services, new technology and market opportunities.
Sponsored Links