Feeds

MCI 'makes $5m a year from spam gangs'

Spamhaus accuses telco of aiding and abetting junk mailers

  • alert
  • submit to reddit

Securing Web Applications Made Simple and Scalable

Spamhaus has slammed MCI for hosting a website selling spamming software that is allegedly integral to the illegal trade in compromised PCs. The site - send-safe.com - sells spamware called Send Safe which uses broadband-connected PCs infected by viruses such as SoBig to distribute junk mail.

More than 70 per cent of spam comes from PCs infected with viruses or trojans, according to Spamhaus, a leading anti-spam organisation. By using compromised machines (proxies in spammer parlance) - instead of open mail relays or unscrupulous hosts - spammers can bypass basic anti-spam defences, such as IP address blacklists. Spamhaus reckons 80,000-100,000 new PCs every week are infected, leading to ever increasing volumes of spam. Spammers and their coding allies are coming up with new tricks to make the approach even more effective, with Send-Safe's developers as the forefront of this illegal activity.

The latest version of Send-Safe allows spammers to use hijacked proxies to send the spam out via the upstream ISP's main mail server, instead of from an infected machine itself. Ruslan Ibragimov, author of the 'Send-Safe'package, also sell lists of freshly-infected proxies to the spammer community, according to Spamhaus.

"MCI Worldcom not only know very well they are hosting the Send Safe spam operation, MCI's executives know send-safe.com uses the MCI network to sell and distribute the illegal Send Safe proxy hijacking bulk mailer, yet MCI has been providing service to send-safe.com for more than a year," writes Spamhaus director Steve Linford.

Timothy Vogel, who heads MCI's legal team for technology issues, told the Washington Post that MCI is only the wholesale provider of the web space used by Send Safe. He told the paper that MCI would take action if it had evidence that the Send-Safe company was spamming which "would violate MCI policy". But merely advertising its product is a form of speech that should not be censored, he said.

Linford said Vogel's interpretation of the law is incorrect. "While commercial speech is given qualified protection under the first amendment, advertising the sale of software designed for the prime purpose of allowing the end-user to engage in illegal activities is not protected under the first amendment," he said

"MCI have flatly refused to stop send-safe.com and other proxy spam gangs, which has allowed Send Safe to become one of the most sold anonymous proxy hijacking bulk mailers on the spam scene, and has had ever more spammers flocking to MCI," Linford added.

Spamhaus accuses MCI of being on the wrong side of the fight against junk mail not just by hosting send-safe.com but becoming a safe haven for spammers in general. MCI ISP tops Spamhaus's chart of 'Top 10 World Worst Spam Service ISPs'. It estimates MCI "earns upwards of $5m a year" from selling service knowingly to known spam gangs. ®

Related stories

US tops junk mail Dirty Dozen - again
VXers creating 150 zombie programs a week
Earthlink wins cash from spammers
Spam fighters infiltrate spam clubs
UUNet tops spammer-hosting super league

The smart choice: opportunity from uncertainty

More from The Register

next story
Mozilla fixes CRITICAL security holes in Firefox, urges v31 upgrade
Misc memory hazards 'could be exploited' - and guess what, one's a Javascript vuln
Manic malware Mayhem spreads through Linux, FreeBSD web servers
And how Google could cripple infection rate in a second
How long is too long to wait for a security fix?
Synology finally patches OpenSSL bugs in Trevor's NAS
Don't look, Snowden: Security biz chases Tails with zero-day flaws alert
Exodus vows not to sell secrets of whistleblower's favorite OS
Roll out the welcome mat to hackers and crackers
Security chap pens guide to bug bounty programs that won't fail like Yahoo!'s
HIDDEN packet sniffer spy tech in MILLIONS of iPhones, iPads – expert
Don't panic though – Apple's backdoor is not wide open to all, guru tells us
Researcher sat on critical IE bugs for THREE YEARS
VUPEN waited for Pwn2Own cash while IE's sandbox leaked
prev story

Whitepapers

Top three mobile application threats
Prevent sensitive data leakage over insecure channels or stolen mobile devices.
Implementing global e-invoicing with guaranteed legal certainty
Explaining the role local tax compliance plays in successful supply chain management and e-business and how leading global brands are addressing this.
Boost IT visibility and business value
How building a great service catalog relieves pressure points and demonstrates the value of IT service management.
Designing a Defense for Mobile Applications
Learn about the various considerations for defending mobile applications - from the application architecture itself to the myriad testing technologies.
Build a business case: developing custom apps
Learn how to maximize the value of custom applications by accelerating and simplifying their development.