December 2017

S M T W T F S
     12
34 5 6789
1011 12 13141516
1718 19 20212223
2425 2627282930
31      

Style Credit

Expand Cut Tags

No cut tags

June 20th, 2008

jarandhel: (Default)
Friday, June 20th, 2008 06:25 pm
So, I'm setting up my new website. So far things are going great, and
believe me when I say that there's a lot going on behind the scenes.
One of the things I'd like to add to my site, though, is something to
give spammers a real headache. I'm going to make a page on a
subdomain of my site, subtly linked to from other portions of my site,
with a collection of links to various spam-bot honeypots such as
http://www.monkeys.com/spammers-are-leeches/ or
http://www-lmmb.ncifcrf.gov/~toms/spam/trap.html or
http://69.5.2.49/trap.html I'm also considering making one of my own,
and here's where my question comes in:

What would the consequences be to setting the MX record for just the
trap subdomain (not the main domain) to 127.0.0.1? I know some
spammers have used this trick themselves, and I was thinking that
using it in conjunction with a very very large list of semi-random
addresses @trap.dreamhart.org would result in both their own databases
being poisoned with false data, and them effectively performing a DOS
attack on themselves when they try to send spam out and hit their
local machine as the mailserver.

Would this potentially work? Would there be any drawbacks to this
approach? Would you like to contribute to my list of spambot
honeypots?

Thank you for playing.... ;-)