Google
Spam messages originating from Google's webmail service doubled last month

Spammers crack Gmail Captcha codes

Sharp rise in spam points to Gmail breach

Written by Shaun Nichols in California

There are several approaches a spammer can take to defeat a Captcha

Mark Sunner Chief security analyst, MessageLabs

Experts are worried about the security protection on Gmail after a recent rise in spam volumes.

Researchers at MessageLabs found that spam messages originating from Google's webmail service doubled last month to reach roughly 2.6 per cent of all webmail spam.

MessageLabs believes that this points to a possible breach of Gmail's spam protections, in particular the 'Captcha' system.

Captcha codes are the input boxes in which a user copies a sequence of letters or numbers from an image. The system is designed to prevent spammers registering multiple accounts automatically.

"There are several approaches a spammer can take to defeat a Captcha," said Mark Sunner, chief security analyst at MessageLabs.

"Whether they do so using an algorithm, a 'mechanical Turk' or combination of the two, email providers are feeling the pressure to keep pace but are limited to what a human can realistically solve.

"This is creating ever more doubt about the long-term effectiveness of Captcha as a security mechanism for email services."

A Google spokesperson declined to comment on the MessageLabs report, but did tell vnunet.com that the company has taken action against the spammers.

"Fighting spam is a never-ending battle," said the spokesperson. "We disabled these accounts immediately and will continue to do so if they spread."

MessageLabs acknowledged that Gmail is a relatively minor source of spam. While the February boost brought Gmail's total to 2.6 per cent of webmail spam, Yahoo Mail accounts for a whopping 88.7 per cent.

Further reading

Google penalises slow-loading ads

AdWords users face 'Quality Score' penalty   More...

Google readies Summer of Code 2008

Company seeks mentors for student programme   More...

Microsoft admits to Hotmail problems

Two for the price of one   More...

Storm worm continues its rampage

Botnet makes new spam run, but security companies strike back   More...

Related articles

Spammers becoming more business savvy

Cyber-crooks capatilising on news in a more commercial way   More...

DomainKeys approved as anti-spam standard

Yahoo/Cisco technology aims to prevent spoofing   More...

Virus and phishing attacks soar in September

Second surge of email attacks targeted at executives   More...

Postini to boost Gmail's enterprise appeal

Gartner gives thumbs up to acquisition   More...

Do you agree?

Advertisement

Job of the week

Search thousands of IT jobs :

Search thousands of IT jobs:

Advanced search

Hiring now on ComputingCareers:

Related IT jobs

Search thousands of IT jobs :

Search thousands of IT jobs:

Advanced search

Advertisement

Watch

12 May 2008

2.4 MBMicrosoft's battles, data breach fines and website rip-offs More...

09 May 2008

2.51 MBWiMax muddle, Google tactics and asteroid bunkum More...

08 May 2008

3.26 MBBroadband Anywhere, phone-free transport and Web 3.0 More...

Poll

DATA ENCRYPTION

DATA ENCRYPTION

Should encryption be mandatory for all personal data held by companies and governments?

Previous poll results

Newsletter signup

Sign up for our range of FREE newsletters:

Existing User

Newsletter user login:

Enter email address to edit your newsletter preferences

Spotlight

BlackBerry Bold

RIM unveils slimmed-down BlackBerry Bold

New handset due this summer   More...

BlackBerry Bold

BlackBerry Bold takes on 3G iPhone

New models go head-to-head, says analyst   More...

Advertisement

HP

HP 'in talks' to buy EDS

Company offering upwards of $12bn   More...

Virgin Media

Virgin prepares 50Gbps launch in 2008

Successful trial clears network for higher speeds   More...

Advertisement