This week started from a huge flood of German propoganda spam
generated by Sober Worm. Messages were coming every few minutes and our current SpamAssassin installations couldn't do anything as the scores were very low. What made matters worse is that this spam was coming to our support addresses handled by Request Tracker (ticketing system), which meant huge waste of time spent on dealing with bogus tickets.
It took me a few days to fight off this spam. Main things I did are the following:
- Enable Vipul's Razor
on SpamAssassin installations and increase its score.
- Add "Spam" button to RT web interface to resolve the ticket without further confirmation and feed incoming SPAM emails into SpamAssassin, which in turn would submit it to Vipul's Razor.
Razor seems to be the only method to fight off this new wave of SPAM. Right now most of the spam messages are recognized by the Razor and cut off before they can waste time of our staff.