Re: [anti-abuse-wg] Co-Chair selection

2024-05-07 Thread Wolfgang Tremmel via anti-abuse-wg
Brian has done great work, support!

Wolfgang


> On 7. May 2024, at 11:37, Markus de Brün  wrote:
> 
> It would be great to hear from you if you support Brian as well.


-- 

To unsubscribe from this mailing list, get a password reminder, or change your 
subscription options, please visit: 
https://lists.ripe.net/mailman/listinfo/anti-abuse-wg


Re: [anti-abuse-wg] Seeking Input on the Future of the Anti-Abuse Working Group

2024-04-03 Thread Wolfgang Tremmel via anti-abuse-wg
re-chartering and widen the the scope is IMHO a good idea, although the current 
charter allows also non-email abuse to be in scope of the WG. This might 
include a renaming (Network Security WG? Internet Security WG?)

please do not close the WG! also: I am happy with the current chairs.

best regards
Wolfgang


> On 3. Apr 2024, at 11:27, Brian Nisbet  wrote:
> 
> In the meantime, if anyone else has any input, we would love to hear it, 
> especially from those who don't engage very often with the WG!
> 



-- 
Wolfgang Tremmel 

Phone +49 69 1730902 0  | wolfgang.trem...@de-cix.net
Executive Directors: Ivaylo Ivanov and Sebastian Seifert | Trade Registry: AG 
Cologne, HRB 51135
DE-CIX Management GmbH | Lindleystrasse 12 | 60314 Frankfurt am Main | Germany 
| www.de-cix.net


-- 

To unsubscribe from this mailing list, get a password reminder, or change your 
subscription options, please visit: 
https://lists.ripe.net/mailman/listinfo/anti-abuse-wg


Re: [anti-abuse-wg] anti-abuse-wg Digest, Vol 89, Issue 15

2019-04-05 Thread Wolfgang Tremmel
Which is why services like RIPE RIS are so valuable to the community.
If anybody would just send its full BGP table to RIS detecting hijacks (and 
later proofing that they happened) would be much easier.

If you do not know what I am talking about, read:
https://www.ripe.net/analyse/internet-measurements/routing-information-service-ris/ris-peering-policy

...and setup a BGP session to RIS.

Wolfgang

> On 5. Apr 2019, at 01:43, Suresh Ramasubramanian  wrote:
> 
> You might find a hijacked prefix advertised solely to a single asn at an ix 
> where it peers, and this for the purpose of spamming to or otherwise 
> attacking whoever owns the asn.  Most of these targeted announcements might 
> not even be visible to anyone else.
> 

-- 
Wolfgang Tremmel 

Phone +49 69 1730902 26 | Fax +49 69 4056 2716 | Mobile +49 171 8600 816 | 
wolfgang.trem...@de-cix.net
Executive Directors: Harald A. Summa and Sebastian Seifert | Trade Registry: AG 
Cologne, HRB 51135
DE-CIX Management GmbH | Lindleystrasse 12 | 60314 Frankfurt am Main | Germany 
| www.de-cix.net




smime.p7s
Description: S/MIME cryptographic signature


Re: [anti-abuse-wg] [policy-announce] 2017-02 Review Phase (Regular abuse-c Validation)

2018-01-19 Thread Wolfgang Tremmel
Do you want to solve a problem or create one?

I can imagine as the "click here and solve captcha" emails will be standardized 
that a carefully crafted attack might lure fist line helpdesk people onto shady 
websides and making them click stuff.

So if I were a helpdesk manager I would order my team not to click on these

IMHO the policy should only check if emails to the abuse contact are delivered, 
which can bei done with some HELO, MAIL FROM and RCPT TO magic on port 25.


best regards
Wolfgang

> On 19. Jan 2018, at 10:58, ox <an...@ox.co.za> wrote:
> 
> you mean in practical "real life"  work?
> 
> practically, abuse admins and people that actually deal with abuse are
> able to solve a capcha and tick a box.

-- 
Wolfgang Tremmel 

Phone +49 69 1730902 26 | Fax +49 69 4056 2716 | Mobile +49 171 8600 816 | 
wolfgang.trem...@de-cix.net
Geschaeftsfuehrer Harald A. Summa | Registergericht AG Köln HRB 51135
DE-CIX Management GmbH | Lindleystrasse 12 | 60314 Frankfurt am Main | Germany 
| www.de-cix.net




Re: [anti-abuse-wg] [policy-announce] 2017-02 Review Phase (Regular abuse-c Validation)

2018-01-19 Thread Wolfgang Tremmel
I support this policy and IMHO an automated check is "good enough"
If someone asks how this could be done I suggest reading rfc2821

IMHO requiring human interaction would deliver too many "false negatives".
People suggesting a captcha I guess have never worked at a helpdesk or in any 
customer support function

best regards
Wolfgang

> On 18. Jan 2018, at 12:20, Marco Schmidt <mschm...@ripe.net> wrote:
> 
> Dear colleagues,
> 
> Policy proposal 2017-02, "Regular abuse-c Validation" is now in the Review 
> Phase.
> 

-- 
Wolfgang Tremmel 

Phone +49 69 1730902 26 | Fax +49 69 4056 2716 | Mobile +49 171 8600 816 | 
wolfgang.trem...@de-cix.net
Geschaeftsfuehrer Harald A. Summa | Registergericht AG Köln HRB 51135
DE-CIX Management GmbH | Lindleystrasse 12 | 60314 Frankfurt am Main | Germany 
| www.de-cix.net