Your Reputation Precedes You

A Look at the Past, Present and Future of EmailFurther compounding matters, lists rely on anecdotal
Reputation Systemsevidence, opening the door to “vigilantes” who add
“Reputation, reputation, reputation! Oh, I have lost mysenders to blacklists without first verifying that
reputation!they’re actually malicious; and spammers, who
I have lost the immortal part of myself, and whatadd themselves to whitelists which take a
remains is bestial.”“pay-to-play” approach, allowing any
--Spoken by Cassio, in Shakespeare’s Othello“bonded” sender to buy their way onto the list.
(circa 1602)Other mitigating factors were behind the decline in
Though written over four centuries ago, the sentimentblacklist and whitelist effectiveness. In the end, the
behind these words still holds true —failure of these lists as email security solutions was
you’re nothing without your reputation. Everylargely due to their inability to factor message quality
day, different reputation systems dictate who you areinto the equation.
to those who don’t know you. To lenders,Second-Generation Reputation Systems
you’re a credit score. To insurance companies,The next iteration of reputation systems built on the
you’re a calculated risk. And now, thanks to thefailure of blacklists and whitelists to maintain control
next generation of reputation systems, you’reover the spam flood. While the lists remained an
an IP score.integral component, new features briefly increased
For obvious reasons, spammers, phishers and virussecond-generation reputation systems’
writers would prefer to hide their identities. They useefficiency and effectiveness. With time, however,
countless techniques to disguise themselves with thespammers adapted their habits to evade detection.
intent of sneaking into your enterprise inboxes, robbingAmong improvements seen in second-generation
you blind or hijacking your network — or both.reputation systems were dynamic lists, necessary to
On the other hand, those who would fight thesecombat the introduction of “zombies” into the
senders are well served to know who the sendersemail security landscape; automatic updates, which
are and what they’ve been up to. To that end,removed the administrative burden of manually
email reputation systems are used to figure out whatuploading lists; and message scoring, which assesses a
sort of behavior senders have demonstrated in themessage’s likelihood of being spam and assigns
past and make educated predictions of their futurea corresponding “score.”
behavior, for better or for worse.The Next-Generation Reputation System
Content Inspection Is Not EnoughToday’s spammers are more clever than ever,
Unfortunately, many enterprises rely on an emailso today’s reputation systems must be equally
security solution based solely on message content;sophisticated. An effective reputation system must be
understanding the source of a particular messagedynamic, comprehensive and precise, and based on
never enters the equation. While this approach isactual enterprise email traffic in order to keep the
moderately effective when dealing with messagesspammers from gaining any advantage. To that end,
that contain specific spam identifiers, it is completelyCipherTrust developed TrustedSource, the most
ineffective at stopping spam that employs techniquesprecise and comprehensive reputation system
not yet seen.available. TrustedSource keeps enterprises ahead of
Email Security with Reputationthe spammers by leveraging research generated by
A comprehensive approach to email security involvesCipherTrust’s industry-leading network of
examining both message content and sender history.customers. In developing TrustedSource, CipherTrust
By evaluating senders based on their past behavior, ahas succeeded in defining to a reputation for every IP
more accurate picture of their intentions and legitimacyaddress in use across the Internet (all 4.2 billion!), not
can be discerned. Has the sender engaged injust those that have been encountered in the past.
spamming, virus distribution or phishing attacks? If theyBy combining years of industry-leading research with
have, an effective reputation system knows and flagsthe unmatched capabilities of IronMail’s
the message. Has the sender even been seenMessage Profiler, CipherTrust has made some
before? If not, a reputation system should pay closeground-breaking discoveries about the email sending
attention to ensure that the sender is not abehavior of IP addresses. TrustedSource merges
“zombie” machine being controlled remotely by aCipherTrust’s unmatched knowledge base and
hacker.global customer network of over 1,400 companies with
First-Generation Reputation Systemsgenerally available data such as traffic patterns, white
In the “early days” of spam (circa 2001), simpleblacklists and network characteristics. This powerful
blacklists and whitelists seemed like an appropriatecombination allows TrustedSource to assign accurate
response to the nuisance messages that had begun toscores to any IP address encountered by IronMail,
show up in inboxes around the world. Blacklists containconsidering both sender history and message
the IP addresses of known spammers, phishers andcharacteristics.
virus senders; whitelists contain the IP addresses ofTrust Your Reputation to Ours
senders known to be legitimate. Referencing these listsA traditional email security approach that relies solely
allowed companies to filter a segment of their totalon identifying messages based on content and/or
mail flow, briefly curbing the onslaught of spamcharacteristics, or an approach that relies solely on
messages. However, their shortcomings wereblacklists and whitelists, is incapable of generating
exposed relatively quickly.adequate data about senders. In order to accurately
The very nature of whitelists and blacklists makesidentify messages as wanted or unwanted,
them manual by default. In order for a list to becorporations must embrace an approach that includes
updated, all messages (both wanted and unwanted)a comprehensive reputation system like
must first be received by an end user and thenTrustedSource. To learn more about TrustedSource
manually reported to a system administrator. With thisand how it can help you take control of your
sort of end-user reliance, it’s easy to see whyenterprise email security, download
the glory days of list-only reputation systems wereCipherTrust’s free whitepaper,
short-lived.“TrustedSource: Reputation Redefined.