04 January 2012

ACMA has been very useful .... but they are hamstrung by legislation and tools!

Below is a very out of date BLOG... a lot has happened in the last 9 months, much of it good but very very hard work.

I'll be back in 2012 with a new perspective, fresh eyes on things and perhaps a little more commentary around the current state of affairs in security,

+++++++++++


I had a conversation with ACMA today re: All of my SPAM complaints and I must say they were very helpful.Whilst we agreed that the "Spoof" emails were highly annoying due to the pain in trying to auto-junk them using a rule in my email client they we powerless to do anything about  the spoof employment scam emails.

One thing that was good to know is that the origin of most of these emails is in Russia. Whilst the relays are often sent through unsuspecting mail servers, generally the content was created and formed in Russia. Interestingly I have had many Chinese spoof emails since this investigation started.

So what can be done on your desktop? Well not much really. Unless you buy one of the many SPAM protection software applications that are available and run your mail through them before you get the mail yourself you are some what at the mercy of this illegal and highly annoying practice. Whilst software on your desktop is useful, you are often at the ISP's whim as to what they allow and that they don't allow. Sure there are settings that allow you to create your own block list, but really there could be a better and more open approach.

I have deleted my next few paragraphs due to a change in circumstances which I am not at liberty to talk about. Needless to say when I can, I will.

Thanks again to ACMA for their tireless efforts.

17 March 2011

12 March 2011

ACMA complaint process working a little more effectively............

There are two ways of reporting SPAM email with ACMA. you use this form http://www.acma.gov.au/interforms/spam_complaint_email.asp and have the option of lodging a "report" or a "complaint".

My first 2 blogs with respects to my communication with ACMA was based around a report of SPAM email and not a complaint. I have now elevated the report to a complaint and below is the first response to my complaint and a response back to ACMA with the answers to the questions that I was asked.

Whilst it is a reasonable start a few things to note. The Complaints Officer doesn't know who I am and therefore would have no clue that I headed the development of a global eDM platform (www.platformdirect.com.au) that complies with all of the SPAM legislation's around the World. So asking me whether I had unsubscribed is a fair question but for me the provision of the unsubscribe facility would lessen my issue with this SPAMMER we now know is an organisation called "Red Foundry".


Now before you Google Red Foundry and start abusing them, it certainly does not appear to be the organisation found @ www.redfoundry.com. Although the concerning thing is that perhaps I have purchased apps built by them? I am not sure. But If I have and they are responsible for this SPAM then this goes to the heart of my issue with how organisations handle data and the accreditation Governments need to implement for the prevention of personal data theft and protection.

Even more interestingly the 3 very similar emails (based on content of each email) have 3 different "Return Paths" which were:
Other similar emails have other legitimate Australian email domains.

So indeed are these companies engaging this Red Foundry to SPAM of on their behalf or are they just unlucky and having their domains attached to this behaviour?

I will pose this question to ACMA and see what they say.

.... Will keep updating this as we go.

+++++++++++++++++++
Current Correspondence with ACMA



Ms,

your questions have been copied into my response with answers below each question.

1. Whether or not you provide consent to the ACMA to release your electronic
address (email address) to Red Foundry with a view to requesting that it be
unsubscribed? (Please note that contact details for Red Foundry will be sourced
from the company’s website, not from the email you received)

I provide consent for you to contact Red Foundry.

2. Whether or not you have attempted to use the unsubscribe facility in the
message?

There was no unsubscribe facility so I was unable to do so.

3. Whether or not you have had any prior association with Red Foundry?

No I have not this is unsolicited email.

Thank you.


-----Original Message-----
From: via RT [mailto:enquiries@spamcrm.acma.gov.au]
Sent: Wednesday, 9 March 2011 11:32 AM
To: David Barnes
Subject: [spamcrm.acma.gov.au #84201] ACMA and Overseas spam & upgrading my report to a complaint

Dear Mr Barnes

Thank you for taking the time to contact the Australian Communications and
Media Authority (the ACMA) with regard to spam you have received. I note that
your initial contact with us in relation to this matter was to make a report,
rather than a complaint. Reports are a simple way for Australians to report the
spam that they have received to the ACMA.

Where the ACMA receives a complaint relating to alleged spam activity, it will,
wherever possible, take action to resolve the issue. If you are interested in
the ACMA’s approach to complaints and reports in relation to the Spam Act, you
may wish to read the Spam Complaint Handling Policy at:

http://www.acma.gov.au/WEB/STANDARD/pc=PC_311907

In order to convert your report to a complaint the ACMA requires further
information relating to:

1. Whether or not you provide consent to the ACMA to release your electronic
address (email address) to Red Foundry with a view to requesting that it be
unsubscribed? (Please note that contact details for Red Foundry will be sourced
from the company’s website, not from the email you received)

2. Whether or not you have attempted to use the unsubscribe facility in the
message?

3. Whether or not you have had any prior association with Red Foundry?

The ACMA will contact Red Foundry to advise it of this complaint, and to
clearly outline the requirements of the Spam Act 2003. Should you provide
consent for your email address to be released to Red Foundry, they will also be
asked to unsubscribe you from receiving any further messages. If you have
attempted to unsubscribe yourself and continue to receive messages, this will
also be addressed in the letter.

In relation to your question on international spam, given the global nature of
spam, the ACMA recognises that long term gains rely on cooperation with
industry members and other regulators, both nationally and overseas.

For an example of the successful outcomes that can be produced through
international cooperation, you may wish to visit
http://www.acma.gov.au/WEB/STANDARD/pc=PC_311998, to see how substantial
penalties were awarded as a result of an ACMA investigation conducted with the
assistance of US and New Zealand authorities.

If you have any further queries in relation to this matter, please contact me
by reply email.

Yours sincerely



Compliance Officer

Anti-Spam Team

Australian Communications and Media Authority

Emails That Appear to be from this "Red Foundry" as Identified by ACMA
 +++++++++++++++++ 
Header Details

Received: from  (192.168.20.10) by
 ) with Microsoft SMTP Server
 (TLS) id 8.0.813.0; Thu, 17 Feb 2011 14:56:14 +1100
Received: from [92.47.55.95] (92.47.55.95) by 
 (192.168.20.10) with Microsoft SMTP Server id 8.1.436.0; Thu, 17 Feb 2011
 11:56:10 +0800
From: 
To: Subject: Didn't fount a job yet?
MIME-Version: 1.0
Content-Type: text/html; charset="utf-8"
Content-Transfer-Encoding: 7bit
Message-ID:
Return-Path: davew@ign.com.au
Date: Thu, 17 Feb 2011 11:56:10 +0800
PRD: platforminteractive.com.au
SenderIdResult: Fail
Received-SPF: Fail (l: domain of does not designate 92.47.55.95 as
 permitted sender) receiver=;
 client-ip=92.47.55.95; helo=[92.47.55.95];
X-MS-Exchange-Organization-SCL: 7
X-MS-Exchange-Organization-PCL: 2
X-MS-Exchange-Organization-Antispam-Report: DV:3.3.9815.464;SV:3.3.9010.377;SID:SenderIDStatus Fail;OrigIP:92.47.55.95
+++++++++++++++++++++++++
Email Content 

About the Job

A well established International Youth Exchange is looking for an International Exchange Co-ordinator to be based in Australia branches.

Key Responsibilities;

Be an ambassador for your community and the AU by creating world-wide friendships and cross cultural understanding.

Create or maintain relationships with local high school officials to determine availability for International Youth Exchange.

Process and distribute language textbooks and teaching materials, as well as monetary aid and donations among partner student organizations.

Guide and support your students and families throughout their exchange experience.

HAVE FUN! Plan group activities, picnics, and gatherings for the students and host families in your area!

What does International Youth Exchange do?

IY Exchange is an organization dedicated to improving international relations through educational and cultural exchange.
It offers students from over twenty countries the chance to study and live in the AU for a complete academic year.

Skills and Qualities


Candidate Profile;
* Desire for new challenges and to develop new opportunities,
* Responsible and capable of setting own challenges,
* Enthusiastic and willing to learn,
* Strong team player.

What's in it for you:
- Excellent Pay (guaranteed $ 19.20/hour);
- Great Opportunity;
- All compensation/salary is paid monthly. Compensation involves bonuses;
- Initial period of probation/stage at basic expenses reimbursement;
- Possibility of fast and substantial pay increase as well as strong and aggressive incentive scheme;
- To join a group of highly successful professionals and entrepreneurs, with a strong and proven track record at a very early stage.


This role would suit a person with experience in administration and a feel for customer service and/or sales.

If you are interested in this role, please submit your CV to: offer@uniongroup-hire.com

++++++++++++++++++++
Second Similar Email Header

Received: from  by
  with SMTP Server
 (TLS) id 8.0.813.0; Tue, 8 Mar 2011 16:31:41 +1100
Received: from ppp-58-11-24-235.revip2.asianet.co.th (58.11.24.235) by (192.168.20.10) with Microsoft SMTP Server id
 8.1.436.0; Tue, 8 Mar 2011 13:31:39 +0800
Received: from  58.11.24.235 (account 0xljcdf5bda8c7bfz@shtel.com.cn HELO
 bacsymkztj.betnwae.va)    by ppp-58-11-24-235.revip2.asianet.co.th (CommuniGate
 Pro SMTP 5.2.3)    with ESMTPA id 595454639 for
 ; Tue, 8 Mar 2011 12:31:38 +0700
From:
MIME-Version: 1.0
Content-Type: text/html; charset="utf-8"
Content-Transfer-Encoding: 7bit
Message-ID: <>
Return-Path: davi539@inspirationalverse.com.au
Date: Tue, 8 Mar 2011 13:31:39 +0800
X-MS-Exchange-Organization-PRD: platforminteractive.com.au
X-MS-Exchange-Organization-SenderIdResult: Fail
Received-SPF: Fail (: domain ofu does not designate 58.11.24.235 as
 permitted sender) receiver= client-ip=58.11.24.235; helo=ppp-58-11-24-235.revip2.asianet.co.th;
X-MS-Exchange-Organization-SCL: 5
X-MS-Exchange-Organization-PCL: 2
X-MS-Exchange-Organization-Antispam-Report: DV:3.3.9907.457;SV:3.3.9010.377;SID:SenderIDStatus Fail;OrigIP:58.11.24.235

 
++++++++++++++++++++
 Email Content 

One of the leading professional design services company in Australia and New Zealand is currently looking for an ambitious recruit for Business Support Assistant.
Our historically steady growth is expected to continue apace in and beyond 2011.
This is a fantastic opportunity to begin your career within an international market leading business.

Reporting to the Business Support Manager your role will be to provide administrative support to the Education,
Training & Skills team.


- Salary 30 000,00 USD + excellent benefits package
- Flexible hours
- Pension available
- Holidays and overtime will be discussed at interview.

General administrative duties will include photocopying, binding,
maintaining stationery requirements, mail distribution, and taking phone messages for the ETS team.

You will assist in producing seminar packs and material for seminars
and business development events plus helping to arrange business development meetings,
as well as supporting the team with billings, recharges, expense claims as and when required.

The ideal candidate for the role will be an ambitious person looking for an opportunity to begin or to develop a career within a large international firm.
Previous experience in a similar administrative role, or an NVQ Level 2 in Administration,
would be preferred, however not as essential as an enthusiastic personality and hard working attitude.

Team working skills will be necessary as will a "hands on" approach, plus excellent attention to details and organisational skills.

You will have a focus on achieving and maintaining excellent standards of delivery of all work carried out all the times.

To apply for the Business Support Assistant role please e-mail your CV and a covering letter to Deborah@west-contract.com

+++++++++++++++++++++
Third Email Header

Received: from  SMTP Server
 (TLS) id 8.0.813.0; Sun, 6 Mar 2011 16:28:43 +1100
Received: from [190.43.184.32] (190.43.184.32) by192.168.20.10) with SMTP Server id
 8.1.436.0; Sun, 6 Mar 2011 13:28:40 +0800
Received: from  190.43.184.32 (account 1146731485@trq.jp HELO
 iclxikhdthhgys.dudzsmztxyziu.com)    by  (CommuniGate Pro SMTP 5.2.3)    with
 ESMTPA id 467970273 for ; Sun, 6 Mar
 2011 02:28:42 -0300
From:
MIME-Version: 1.0
Content-Type: text/html; charset="utf-8"
Content-Transfer-Encoding: 7bit
X-Antivirus: avast! (VPS 110305-1, 05/03/2011), Outbound message
X-Antivirus-Status: Clean
Message-ID: <99c35e3a-8421-41cd-8416-c344b5376b14@platform-per-dc.Platform.local>
Return-Path: no-reply783@workingin-australia.com
Date: Sun, 6 Mar 2011 13:28:40 +0800
X-MS-Exchange-Organization-PRD: platforminteractive.com.au
X-MS-Exchange-Organization-SenderIdResult: Fail
Received-SPF: Fail (platform-per-dc.Platform.local: domain of com.au does not designate 190.43.184.32 as
 permitted sender) receiver= client-ip=190.43.184.32; helo=[190.43.184.32];
X-MS-Exchange-Organization-SCL: 7
X-MS-Exchange-Organization-PCL: 2
X-MS-Exchange-Organization-Antispam-Report: DV:3.3.9905.460;SV:3.3.9010.377;SID:SenderIDStatus Fail;OrigIP:190.43.184.32

+++++++++++++++++++
Third Email Content

Good afternoon!

I make the functions of manager in the HR department of the company well-known all over the world.

The corporation is engaged in various activities around the world.
- capital asset consulting services
- full support for your businesses
- companies registration
-leading affairs support
- financial consulting
-etc.

Great offer for job-seekers in Australia and New Zeeland for the position of Regional manager.
- salary 2.400 USD + employee benefits
-2 or 3 hours of employment a day
- independent schedule of work

If you feel this job offers is right for you, please inform us your contact information. Robyn@west-contract.com
Your name:
Your surname:
Counrty you live in:
Your city:
E-mail address:
Mobile number:



Remark for you! This job offer is just for Australia and New Zeeland!

Be kind to send us your personal information so that we can contact you for further communication.

09 March 2011

Tablets.... you are kidding me right? Oh you're not!

Just a quick interlude away from the ACMA blogging I have been doing. I have quite a good email from ACMA that I need to respond to but it can wait for now as I'm back in Perth again and infected with all of the chatter about iPad 2, Galaxy S and the HP Touchpad.

Some of my colleagues at work were infected by the iPad "bug". I looked at it and assessed it when it came out and as usual I didn't become part of the early adopter phase. Indeed I never am, but I was and am interested.

I think it was last year in Hong Kong when I saw someone in a lecture using their iPad as a flight simulator. Thought the iPad looked pretty cool and needed something to keep an eye on.

So I started to go through the reasons why I would buy one. Games, yeah but no not enough. Email, maybe but you need an Australian 3G card and quite frankly with Vodafone's recent performance and the cost of a Telstra chip its all a wee joke. Mobile Internet, sorry guys I need a Flash player in my browser and in case anyone hasn't caught up with the news but Microsoft WMV still rates as a movie player.

And so the list went on.

In comes iPad 2 and sure enough no good. My reasons are personal and valid for anyone with a business. Why would I want a Tablet? Easy:
  • Email.
  • Internet (with Flash capabilities and all movie download players).
  • Microsoft Office (or very compatible) with editing features.
  • Document transfer / storage.
  • USB connection.
  • Love the games and the Apps on my iPhone 3GS (yes no early adopter here, nor willy nilly upgrades to iPhone 4) so they are a must now too.
In comes the the two new contenders. Samsung with Galaxy S and HP with Touchpad. I haven't been so disappointed  since my favourite football team lost in the 2001 Grand Final. What a joke.

Samsung and HP you have an unbelievable opportunity here to get business user uptake and make Apple the Tablet Choker of all time, a bit like the All Blacks in a Rugby World Cup. I don't care who it is but somebody HURRY UP and please get it right :-)

I'll be back with more ACMA shortly.

07 March 2011

ACMA Response, a start

Monday March 7, I have received a response to case #84234 which was the response to a response that I sent. A good start but reading the email below my reply to ACMA really only informs me of what i had already told ACMA In an email that I blogged on the 3rd of march!

http://davidbarnes.platforminteractive.com.au/2011/03/acma-communications-can-we-improve.html

My response to ACMA's current email response is below. What I really wanted to know and what I think is important here is how can we do something about all of this SPAM and are we being supported by our Government?



Hi Debbie,

Thank you for your response.

My main concern is how do these people get tracked down and fined? Is this something your department deals with or is it just now a cost of having email and doing business.

Are there tools ACMA suggests that we use to block / ban list this type of behaviour?

Thanks

David



-----Original Message-----
From: [mailto:complaints@spamcrm.acma.gov.au]
Sent: Monday, 7 March 2011 11:29 AM
To: David Barnes
Subject: [spamcrm.acma.gov.au #84234] ACMA Email Complaint - Email Spoofing

Dear Mr Barnes,

I refer to your recent enquiry regarding the emails appearing to be sent from
yourself.

As you are aware, it appears that someone may be faking or “spoofing” your
email address for the purpose of sending spam emails. In this situation, the
spammer will fake some or most of an email’s header information, in order to
hide their identity and the email’s originating path. In most cases, these
emails are found to have originated from overseas.

This type of attack is usually opportunistic and automated, and is relatively
common. It is a method that spammers have created to bypass spam filters. Most
likely, your email address was obtained through the use of email ‘harvesting’
software.

You should ensure that your computer is running up-to-date anti-virus and
firewall software, and that you have downloaded the latest security updates for
your computer’s operating system and other software.

If you find that your contacts are also receiving the spam, you may wish to
take precautions in securing your email account, as this may indicate that your
account has been compromised. If you feel this is the case, we recommend you
change your passwords to something that is difficult to guess, and change any
associated security questions and answers (if your service provides this). You
may also wish to report this to your email service provider’s support or
security team.

If you have any further enquiries regarding this matter, please contact me by
return email.

Yours sincerely,

Debbie

Anti-Spam Team
Australian Communications & Media Authority