Deliberate false signatures in spam?
Mads Laursen
gnupg@dossen.dk
Mon Jul 21 22:07:04 2003
--u3/rZRmxL6MmkK24
Content-Type: text/plain; charset=us-ascii
Content-Disposition: inline
Content-Transfer-Encoding: quoted-printable
On 21/07/03 20.52, Neil Williams wrote:
Content-Description: signed data
> Just received a spam message with this contained within:
[snip: spam with faked sig]
Very creative way to mask spam, what on earth will they think of next?
> (Hopefully the inclusion of the content won't invalidate my own
> signature! Let me know!)
Since you asked, it validates perfectly well. PGP/MIME seems fairly
robust, AFAIK you can even attach signed messages and sign the result,
and have it all work.
/dossen
--=20
"Nuclear war can ruin your whole compile."
-- Karl Lehenbauer
--u3/rZRmxL6MmkK24
Content-Type: application/pgp-signature
Content-Disposition: inline
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.2 (GNU/Linux)
iD8DBQE/HEht411kMaBbTb0RAhJPAJ0fpgNOg08oLQkXRj00B6WzsUgHEgCfUMr6
xKc1swkxkdvPnxBtwqXNqdU=
=eDD8
-----END PGP SIGNATURE-----
--u3/rZRmxL6MmkK24--