Advertisement
Promo

Online business Toolkit

Innocent emails are a victim of spam war

Declan McCullagh, CNET News.com CNET News

Published: 02 May 2003 08:06 BST

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

Spam has become such a vexing problem that, if current trends continue, email could become a far less useful way to communicate. Some of the muscular responses to unsolicited bulk email, such as blacklists that target Internet providers used by spammers, may have created problems of their own.

On Thursday, participants at a three-day spam summit convened by the Federal Trade Commission sparred over whether such blacklists are legal and whether they do more harm than good. Some speakers warned their use means that legitimate email is often lost or silently discarded -- becoming an accidental casualty in the war on spam.

Margie Arbon of the Mail Abuse Prevention System defended the practice of blacklisting, in which activists create and publish a list of Internet addresses that are linked with spammers. Internet service providers and individuals can subscribe to the list and use it to discard messages that originate from addresses on it.

"Blacklists are a decision by the owner of the equipment," Arbon said. "They are trying to defend their property...They are being inundated by this mail."

But the practice came under fire from J. Trevor Hughes, director of the Network Advertising Initiative's Email Service Provider Coalition, whose members include DoubleClick, credit agency Experian and companies that sell high volume email marketing campaigns. Hughes contended that financial statements and other important email have been lost because of accidental or intentional entries on blacklists. "Those are all messages that have suffered because of blacklistings and false positives," he said.

The FTC summit is the first serious evaluation of blacklists undertaken by the federal government, even though the technique has been the target of criticism for frequently blocking mail that is not spam. A particularly controversial "guilt-by-association" approach employed by some list operators places an entire ISP or hosting service on a blacklist merely because one of its users is a spammer.

In February, Microsoft's MSN accidentally blocked incoming messages from rival ISPs, including AOL's RoadRunner broadband service and EarthLink. And, as first reported by CNET News.com last November, the FTC itself adopted blacklists that blocked some legitimate email to agency staff.

Brian Huseman, a staff attorney in the FTC's division of marketing practices, said the agency was reviewing its approach. "We're in the process of examining those blacklists," he said.

While blacklists may not break the law, they could amount to irresponsible censorship, said Cindy Cohn, legal director for the Electronic Frontier Foundation. Cohn warned of "private entities and anonymous entities deciding which of your mail gets through and which doesn't get through." She added that hobbyists and nonprofit groups operating mailing lists have encountered an increasing number of problems.

"EFF has received complaints from noncommercial listserv owners that they have ongoing problems getting their solicited messages through," Cohn said, adding that EFF had begun to draft a list of "best practices" for blacklist operators to follow.

While blacklists can be effective in reducing spam, critics say they can be applied in a secretive and unaccountable way. In response to a question from the FTC, Spamhaus' Alan Murphy refused to say which ISPs were using the organisation's blacklist and, citing current litigation, would not reveal what procedure is used to add addresses to it.

One panellist suggested that blacklists could run afoul of the law by interfering with business relationships. Another panellist, Michael Grow of the Arent Fox law firm, disagreed. "If you conduct a reasonable investigation and form an opinion that someone is the source of spam or a particular IP address is being used (for spamming), there's a First Amendment right that attaches to that."


For everything Internet-related, from the latest legal and policy-related news, to domain name updates, see ZDNet UK's Internet News Section.

Let the editors know what you think in the Mailroom.

  • Email
  • Trackback
  • Clip Link
  • Print friendlyPrint with EPSON

Did you find this article useful?
41 out of 82 people found this useful


Full Talkback thread

0 comments

Company/Topic Alerts

Create a new alert from the list below:









Sentry Posts Blog

Authentication risks all too human

Risks to successful online banking identification and authentication using smartcards involve a mixture of human and technological factors, according to the European Network and Information... More

1 comment

Opera censors Chinese content

Opera has updated the Chinese version of its mobile browser to stop users accessing restricted content. Opera Mini was updated on Friday from an international to a Chinese version,... More

2 comments

Symantec website breached

Security company Symantec has said that one of its websites was successfully breached. Romanian security researcher 'Unu' posted details of the breach in a blog post on Monday. Unu... More

Post a comment

Video icon

Video

Google Chrome

Roundup: Full coverage of Google Chrome

The search giant has launched a beta of its own open-source browser, sending a clear challenge to Microsoft in the way it lets users work with applications More

Blog: Google Chrome has Microsoft's code inside, says MS manager

And furthermore, he says, that's a good thing... More

Blog: Google Chrome — nine things we've found since launch

Google must be very happy with the coverage Chrome has gathered. But it's not all good news... More


Skip Sub Navigation Links to CNET Brand Links

Help

Become part of the ZDNet community.

Newsletters