- flaw in Microsoft Exchange used to relay spam, zdnet.com.au
- Posted by Daeron on November 16th, 2003
Mail server flaw opens Exchange to spam
Robert Lemos Nov 17 2003
Administrators of e-mail systems based on Microsoft's Exchange might
have spammers using their servers to send unsolicited bulk e-mail under
their noses, a consultant warned last week.
Aaron Greenspan, a Harvard University junior and president of consulting
company Think Computer, published a white paper Thursday detailing the
problem, discovered when a client's server was found to be sending spam.
Greenspan's research concluded that Exchange 5.5 and 2000 can be used by
spammers to send anonymous e-mail. He says even though software
Microsoft provides on its site certifies that the server is secure, it's
not.
"If the guest account is enabled (on Exchange 5.5 and 2000), even if
your login fails, you can send mail, because the guest account is there
as a catchall," he said. "Even if you think you've done everything (to
secure the server), you are still open to spammers." ...
http://snurl.com/30pc
http://www.zdnet.com.au/newstech/sec...0281042,00.htm
- Posted by John Bailo on November 16th, 2003
Daeron wrote:
my earthlink account gets about 500 spams a day.
when i asked earthlink to diagnose it, they said my
machine was sending the email and it was bouncing back to
me. i said it was unlikely since i only use linux
to access my personal account, and to prove them wrong
i turned off my machines and there was still spam.
now i get these 'virus detection messages' from syadmins
saying that their virus detectors found their exchange
machines or users had viruses that were sending me
spam.
- Posted by Lee Wei Shun on November 17th, 2003
Daeron wrote:
story/0,2000048600,20281042,00.htm>
Oh yes, I finally gave up fiddling with exchange and installed postfix as a
mail proxy in front of Exchange to filter everything for my client. Much
less work for me.
Cheers,
WS
--
Change to leews to mail. Linux user #61399
The beginning of the
end
- Posted by Douglas Clinton on November 17th, 2003
On Mon, 17 Nov 2003 09:19:42 +0800, Lee Wei Shun wrote:
What!!! I thought Exchange WAS a spaming enabled box...damm, who knew.
--
GNU/Linux is God
get used to it
declinton@sympatico.ca
Linux User # 276385