How to Stop E-mail Spoofing

Discussion in 'Security' started by rbucich, Jan 10, 2009.

  1. #1
    Hello,

    I apologize if this is in the wrong section, it seemed most applicable and the best spot to get an answer.

    One username for a domain I own is getting tons of spam e-mail where they are spoofing the same e-mail address to get through the spam software. For example, if my e-mail is: that address is showing as the to: and the from: so I can't block it.

    The IP it belongs to varies each time as well so blocking that isn't helpful. The issue is not happening with any other usenames on the same domain.

    Any idea how I can defeat the spam?
    Thanks in advance!
     
    rbucich, Jan 10, 2009 IP
  2. zacharooni

    zacharooni Well-Known Member

    Messages:
    346
    Likes Received:
    20
    Best Answers:
    4
    Trophy Points:
    120
    #2
    You will need to setup SPF and configure your mail daemon to perform sender verification.
     
    zacharooni, Jan 10, 2009 IP
  3. blowingideas

    blowingideas Peon

    Messages:
    642
    Likes Received:
    4
    Best Answers:
    0
    Trophy Points:
    0
    #3
    but in some cases, if the mal server of the recipient does not check for SPF, then it defeats the purpose..
     
    blowingideas, Jan 16, 2009 IP
  4. devsn

    devsn Active Member

    Messages:
    156
    Likes Received:
    4
    Best Answers:
    0
    Trophy Points:
    70
    #4
    check for headers regularly and check if the mail domain resolves to he given IP.. if not.. it's spoofed.
     
    devsn, Jan 23, 2009 IP
  5. justdoit1

    justdoit1 Peon

    Messages:
    100
    Likes Received:
    2
    Best Answers:
    0
    Trophy Points:
    0
    #5
    Do you want to filter email address coming into your inbox ?
     
    justdoit1, Jan 25, 2009 IP
  6. engineerroy2008

    engineerroy2008 Member

    Messages:
    192
    Likes Received:
    3
    Best Answers:
    0
    Trophy Points:
    33
    #6
    USe spam assassin with mail scanner it will help you in this black listing and spoofing, what control panel you use and what mail server?
     
    engineerroy2008, Jan 25, 2009 IP
  7. Cr1T1c4L

    Cr1T1c4L Peon

    Messages:
    23
    Likes Received:
    0
    Best Answers:
    0
    Trophy Points:
    0
    #7
    you cant do anything about spoofing you can make a simple php script with the email you like to "spoof" it.
     
    Cr1T1c4L, Jan 25, 2009 IP
  8. pitagora

    pitagora Peon

    Messages:
    247
    Likes Received:
    9
    Best Answers:
    0
    Trophy Points:
    0
    #8
    yes you can but a spam filter will flag it as spam most of times because it is spoofed. Using SPF will increase the odds of it being flagged as spam, if the sender domain also uses SPF. And if he spoofs your domain....well you control the SPF records. They would have no way around it.
     
    pitagora, Jan 25, 2009 IP