You are here: silicon.com > Management > Law & Policy

Law & Policy

Are spam blacklists killing legitimate emails?

In a word: yes

Tags: yahoo, blocking, aol, filter

By Declan McCullagh

Published: 2 May 2003 11:34 BST

Spam has become such a vexing problem that, if current trends continue, email could become a far less useful way to communicate.

But have some of the muscular responses to unsolicited bulk email, such as blacklists that target internet providers used by spammers, created problems of their own?

On Thursday, participants at a three-day spam summit convened by the Federal Trade Commission in Washington sparred over whether such blacklists are legal and whether they do more harm than good. Some speakers warned their use means that legitimate email is often lost or silently discarded - becoming an accidental casualty in the war on spam.

Margie Arbon of the Mail Abuse Prevention System defended the practice of blacklisting, in which activists create and publish a list of internet addresses that are linked with spammers. Internet service providers and individuals can subscribe to the list and use it to discard messages that originate from addresses on it.

"Blacklists are a decision by the owner of the equipment," Arbon said. "They are trying to defend their property... They are being inundated by this mail."

But the practice came under fire from J. Trevor Hughes, director of the Network Advertising Initiative's Email Service Provider Coalition, whose members include DoubleClick, credit agency Experian and companies that sell high volume email marketing campaigns. Hughes contended that financial statements and other important email have been lost because of accidental or intentional entries on blacklists. "Those are all messages that have suffered because of blacklistings and false positives," he said.

The FTC summit is the first serious evaluation of blacklists undertaken by the federal government, even though the technique has been the target of criticism for frequently blocking mail that is not spam. A particularly controversial "guilt-by-association" approach employed by some list operators places an entire ISP or hosting service on a blacklist merely because one of its users is a spammer.

In February, Microsoft's MSN accidentally blocked incoming messages from rival ISPs, including AOL Time Warner's RoadRunner broadband service and EarthLink. And, as first reported by CNET News.com last November, the FTC itself adopted blacklists that blocked some legitimate e-mail to agency staff.

Brian Huseman, a staff attorney in the FTC's division of marketing practices, said the agency was reviewing its approach. "We're in the process of examining those blacklists," he said.

While blacklists may not break the law, they could amount to irresponsible censorship, said Cindy Cohn, legal director for the Electronic Frontier Foundation. Cohn warned of "private entities and anonymous entities deciding which of your mail gets through and which doesn't get through." She added that hobbyists and nonprofit groups operating mailing lists have encountered an increasing number of problems.

"EFF has received complaints from noncommercial listserv owners that they have ongoing problems getting their solicited messages through," Cohn said, adding that EFF had begun to draft a list of "best practices" for blacklist operators to follow.

While blacklists can be effective in reducing spam, critics say they can be applied in a secretive and unaccountable way. In response to a question from the FTC, Spamhaus' Alan Murphy refused to say which ISPs were using the organization's blacklist and, citing current litigation, would not reveal what procedure is used to add addresses to it.

One panelist suggested that blacklists could run afoul of the law by interfering with business relationships. Another panelist, Michael Grow of the Arent Fox law firm, disagreed. "If you conduct a reasonable investigation and form an opinion that someone is the source of spam or a particular Internet Protocol address is being used (for spamming), there's a First Amendment right that attaches to that."

Declan McCullagh writes for News.com

  1. Zones
  2. Management
  3. Networks
  4. Software
  5. IT Services
  6. Hardware
  1. Verticals
  2. Public Sector
  3. Financial Services
  4. Retail & Leisure

  • Jobs
Mid Level C#. Awesome Client List. Telecoms, Finance. Leeds to 32,000

Want to work with leading City Banks? Want an environment that will expose you to leading real-time systems? Huxley Associates are currently working ...

Associate Regulatory Affairs Manager

Must have prior experience in the preparation of MAA submissions for new chemical entities or maintenance of Product Licences in European ...

HRS - Operations Support Lead-00055714

HRS - Operations Support Lead-00055714 Description Workforce - Accenture HR Services (AHRS) Location - The successful applicant can be based from ...

CIO50 2008
The silicon.com CIO50 2008 profiles the most influential and innovative tech chiefs in the UK across all industries and organisation size, from the biggest FTSE100 companies to high growth dot-com start ups and the public sector. The list was voted on by the UK CIO community and a panel of experts. Find out more in our latest special report.





Quick Sitemap Links: