Spam on community-poland mailing list

NEW
Unassigned

Status

Infrastructure & Operations
Infrastructure: Mail
8 months ago
3 months ago

People

(Reporter: stef, Unassigned)

Tracking

Details

(Reporter)

Description

8 months ago
Some time ago (2 months maybe) I started receiving much more moderation notifications about spam messages (few a day) - not sure why.

But recently (27.03.2017) one managed to slip through, https://mail.mozilla.org/pipermail/community-poland/2017/000541.html (because of mailing list address in From header?)

It would be great if we could find out why such message was accepted automatically, test prevention method (adding mailing list address to discard list?) and delete the message.

Additionally it would be good to know if something important was changed recently (like this year) in a way messages are delivered to mailing list that could change volume of spam hitting the list.
(Reporter)

Comment 1

8 months ago
(In reply to Stefan Plewako [:stef] from comment #0)
> But recently (27.03.2017) one managed to slip through,
> https://mail.mozilla.org/pipermail/community-poland/2017/000541.html
> (because of mailing list address in From header?)
> 
> It would be great if we could find out why such message was accepted
> automatically, test prevention method (adding mailing list address to
> discard list?) and delete the message.

I forgot that we have e-mail whitelist for few Mozilla related domains - that would explain auto accept part. As we don't get that many messages from nonsubscribers on those domains I could remove whitelist entirely.

But if there is no protection against e-mail spoofing (?) than how sender/accept_these_nonmembers could be reliably used? (and how about protections based on e-mail addresses checks?)

> Additionally it would be good to know if something important was changed
> recently (like this year) in a way messages are delivered to mailing list
> that could change volume of spam hitting the list.
(Reporter)

Comment 2

3 months ago
Let's remove https://mail.mozilla.org/pipermail/community-poland/2017/000541.html message at least.
Flags: needinfo?(limed)

Comment 3

3 months ago
(In reply to Stefan Plewako [:stef] from comment #2)
> Let's remove
> https://mail.mozilla.org/pipermail/community-poland/2017/000541.html message
> at least.

Removed the message and regenerated archive
Flags: needinfo?(limed)
(Reporter)

Comment 4

3 months ago
Great, thank you. Do you think anything else in this bug could be actionable?
You need to log in before you can comment on or make changes to this bug.