Closed aronmal closed 6 months ago
Here a screenshot:
I know this can't be reproduced, and I don't think there will be any actions by this report. But I still wanted to inform about this incident, in case other may also be affected by this rspamd 'outage'.
Feel free to close this issue if the given information are likely insufficient to find a root cause.
Hi, my guess: Mails to postmaster are not filtered as the postmaster address should be contactable in case of delivery issues, including being filtered by the spam filter. At least this is common practice.
Hey, thanks for the response. I guess the approach makes sense. But on the other hand, by that I suspect the 'postmaster@' is more vulnerable to such an attack?
Is there a way to further protect in case of such an attack, beside the mail clients preventing to display images?
rspamd is showing a hash for the virus, is there a way too look it up to find out what kind of virus was send?
Contribution guidelines
I've found a bug and checked that ...
Description
Logs:
Steps to reproduce:
Which branch are you using?
master
Which architecture are you using?
x86
Operating System:
Unraid 1.12.9
Server/VM specifications:
enough
Is Apparmor, SELinux or similar active?
no
Virtualization technology:
no
Docker version:
24.0.9
docker-compose version or docker compose version:
v2.21.0
mailcow version:
2024-02
Reverse proxy:
Nginx
Logs of git diff:
Logs of iptables -L -vn:
Logs of ip6tables -L -vn:
Logs of iptables -L -vn -t nat:
Logs of ip6tables -L -vn -t nat:
DNS check: