[Charlug] spammer has no clue about encryption

Pierre Abbat phma at phma.optus.nu
Fri Jun 26 01:59:34 EDT 2009


I got a spam from someone claiming to be a soldier in Iraq. The subject line 
begins "Encrypted Private Letter". The message is in plaintext, 
between "BEGIN PGP PUBLIC KEY BLOCK" lines. A real PGP message in plaintext 
starts "BEGIN PGP SIGNED MESSAGE". "BEGIN PGP PUBLIC KEY BLOCK" starts a 
public key, which looks like a mishmash of letters and numbers.

Other tipoffs: it's sent to undisclosed recipients, and the From address ends 
is "military.com", which exists, but isn't a domain of the military itself 
(those end in ".mil").

Pierre


More information about the CharLUG mailing list