[Mailman-Users] my mailman has been hacked !!

Jeffrey Goldberg jeffrey at goldmark.org
Wed May 27 23:43:44 CEST 2009

On May 27, 2009, at 1:23 PM, Khalil Abbas wrote:

> all members are moderated, except my own email address  
> (my at email.com) which I use to post to the list ..

> someone sent from my address

> the 'From' name is not me,

Please clarify.  Did the From line contain your email address (my at email.com 
) or not?  You seem to be saying two different things.

If, as I suspect, someone is merely forging your address to post to  
the list, there are two things that you can do (I would recommend that  
you do (1) as an immediate and temporary measure, until you can get  
(2) in place).

(1) Moderate even your own postings, so that your list moderator  
password is required to post, even if "from" your own address.

(2) Improve the spam/virus filtering on your mailserver.  A forged  
message from an open relay containing a virus should have been stopped  
by your mail system long before it reached mailman.



