Bypassing Gmail's spam filters with ChatGPT
neelc.org
neelc.org
When reporting an e-mail as spam it will not only block the address but waste the spammers time, rendering the actions unprofitable.
https://adventuretime.fandom.com/wiki/Goliad_(episode)
(Spoilers follow)
> Princess Bubblegum is concerned over her mortality, and reveals her designated successor to Finn and Jake. However, things get out of control when the heir turns against Princess Bubblegum.
> […] The heir is Goliad, a pink Sphinx with a mound on her forehead […]
> […] Goliad reveals that her mound concealed a third eye, and proceeds to psychically control Finn and the obstacles in the course for a perfect completion. She explains that with her in control, everything would be perfect. […]
> […]
> […] Finn and Jake confront Goliad but are beaten by her psychic powers. Goliad tries to read Finn's mind, and Finn narrowly avoids revealing the plan by interrupting his memories with nonsense. The new creature; another sphinx with an eagle's head, white feathers, and golden hair; rescues Finn and battles Goliad. Goliad tries to convince her brother, named Stormo, that they should work together, but Stormo refuses by screeching. They engage in a psychic showdown, but with their powers matched the two creatures are eternally locked in a mental stalemate.
All totally real. But then, I am a furry, I've met many of them IRL also.
I'm sure someone else knows the lore better. There is a lot of supporting literature, just not a key component of any stories.
The open internet will be a dark forest, beautiful but mostly populated by metal-brains, meatb-brains will retreat to their human only spaces, local Facebook or Instagram where you know everyone in person or WhatsApp chat groups.
I also note that I missed it when it went past the front page at the start of the month. For any others who also missed it - https://news.ycombinator.com/item?id=34243709
https://soundcloud.com/ztutz/sets/iolet-music-from-the-world...
The Thousander Chant is fun if you've got the right audio setup.
https://longnow.org/store/iolet/
> In Neal Stephenson’s new novel Anathem, the Decanarian Erasmus’ daily chore is to ring the Clock bells in his “Math” in a special sequence each day as he chants out the sequence. Those sequences and chants are all based on mathematical formulae that composer and coder David Stutz has put together into an album called Iolet.
It's not much "under" it - but rather the fill your senses with what it would be like to be in the Mynster as each nave did their chats in the great octagonal hall. And while its a passage about the Hundreders...
> We sauntered across the meadow to the Mynster. Even so, we got there in plenty of time, and ended up in the front row, closest to the screen. Voco continued ringing for some minutes after we arrived. Then the eight ringers filed down from their balcony and found places farther back. A choir of Hundreders came out into the chancel and began a monophonic chant.
Or the description of a Thousander chat
> ... As I walked toward it my perceptions cleared suddenly and I shook my head in amazement at my own silliness in having imagined it was an amphibian or a truck. It was plainly a human voice. Singing. Or rather droning, for he had been stuck on the same note the whole time I’d been awake.
> The note changed slightly. Okay, so it wasn’t a drone. It was a chant. A very, very slow one.
> I could have stood there watching and listening for hours. I got the idea—which might have been just my imagination—that {spoilers} was singing a cosmographical chant: a requiem for the stars that were being swallowed up in the dawn. Certainly it was music of cosmographical slowness. Some of the notes went on for longer than I could hold my breath. He must have some trick of breathing and singing at the same time.
Just let the sound fill everything.
If you’re that good at scaling systems like that someone with legit traffic would be able to pay more than the spam companies.
Alternatively, email addresses that are necessarily paid for that have maximum sending limits or extra costs above those limits, so those addresses are not profitable for spam bots to use.
I could imagine some kind of “super priority email” that costs a dollar or something, that gets prioritized and is very unlikely to be marked spam.
More ideas: Maybe the amount paid per email sent changes depending on the percent of previous emails marked “accept emails from this sender”. Maybe some percentage of the e-mail fee is given to the recipient of the email.
Note that if a highly spam resistant email account is adopted by everyone the amount of spam sent may fall significantly. Gmail doesn’t count because it still isn’t as good as a system where sending millions of spam emails is simply too expensive.
That would necessitate reliably detecting the emails as spam in the first place though. False positives in particular could be devastating. Imagine a chat bot coming up or going along with business proposals in your name for example.
Speaking as an ISP, if somebody turns loose what is clearly an AUTOMATED tool shitting up the contents of my abuse@ispname.com inbox with reports from some software script, I can guarantee you it goes to /dev/null
At some point we will just block their MX at the SMTP transfer point and call it a day.
98% of that already is abusive DMCA rights holders who are ignoring our federally designated DMCA-agent address for copyright violation complaints. With their automated 3rd party things complaining about people torrenting Yellowstone or whatever.
Actual reports that are clearly written by a human saying "hey it looks like this /32 of an IP address is compromised as some sort of botnet" will get a thousand times more attention. Or the very rare cases where we have a network-engineering emergency escalation and somebody calls me on the phone.
Anything generated by chatGPT or similar will be clearly obvious enough that it matches a similar pattern and comes from an automated script.
The real sea change will come, though, when bot swarms control capital. For example, amassed for doing spam tasks. That capital can be deployed in a variety of ways, but the point is that corporations and networks will prefer bots because they generate more social capital, in coordinated ways, and also amass more financial capital than humans.
If you think this is far fetched, IT ALREADY HAPPENED on wall street and hedge funds. Bots have replaced people in trading and control the capital. Humans who trade among the bots get fleeced and don't even know it.
https://fortune.com/2022/06/02/zillow-6-billion-home-flippin...
> Humans who trade among the bots get fleeced and don't even know it.
Anyone who trades gets fleeced unless they know what price impact is. Don't trade, invest.
Right. And who the fuck would pay for GPU time for that ?
[1] https://www.cnbc.com/2022/11/05/how-phone-scammers-tricked-a...
I'd take that number with a huge grain of salt.
Obviously for scammers it would be huge benefit as they are directly profiting off it.
Kitboga has actually been playing with this. [1] Apparently his bot was successful enough to get some bank accounts from scammers that he reported.
This will not only increase the spam-problem, but will most likely be used to scale and do targeted phishing attack as well. I wrote an extensive article[0] where I analyzed this. And to no surprise, GPT-3 can be used to generate dynamic phishing campaigns on the fly in multiple languages, classify email responses, improve email thread hijacking attacks etc.
[0] https://www.xorlab.com/en/blog/why-ai-powered-phishing-will-...
Such as? Actually curious and doing a lot of sales myself, I'm interested!
But anyway it sounds like you intend to send spam. I recommend doing literally anything else.
a) invalid rdns of other mx
b) invalid spf
c) invalid DKIM / no DKIM signature
d) failed RBL list check - I subscribe to and feed it a few different common sense SMTP RBLs
Rejecting as spam things in the above category before it even looks at the content.
Adding a high score for invalid rdns, spf or dkim before something generally similar to spamassassin or a more advanced message subject line/body analyzing system begins classifying things help.
And then additional score is added of course for text spam content in message subject line and body.
Their AI to get you to buy something, do something, believe something, or in a warzone to kill you and Your AI to protect you from Their AI. Reality may even become so dangerous and illusory that humans lose a lot of their agency to Your AI.
I see a lot of people thinking chatgpt is something new capable of such stuff but GPT3 is far less restrictive and has been able to do all this for almost an year now.
You can change up the prompt to change the writing style so spam filters will have trouble catching this new world of spam.
Some of it hasn't even been sent to me as an email, but shows up in the inbox as though it was an email.
Granted, there's fewer scam emails than in my non-gmail inbox, but man is there a lot of spam.
Boring, brown, homogeneous noise
Things like IP reputation, sender reputation, and various SPF-like headers are far more important.
Stuff where it doesn't have to be correct, have a high hit rate, or even be edited. Just need to produce plausible enough sounding, human-like content.
Already doing that with hey email [0] where you screen all incoming senders.
[0] https://hey.com
Gmail’s spam filters are Google’s weakest tech. At least I don’t know of anything worse.
I get a fair amount obvious spam coming through the filter, but the issue with any sort of classification is the tradeoff between False Positives and False Negatives.
The occasional False Negative causes a lot less damage (2 seconds to delete or report as spam) verses the damage of a False Positive (not seeing an important email for two weeks or ever).
The parent’s comment is valid. Any modern email peer is doing domain based reputation which is possible thanks to SPF and DKIM, and if you don’t have those configured you’ll have a bad time. Then it’s the job of the domain owner or email operator (postmaster) to make sure you’re not blasting out SPAM and respond to abuse feedback. If you think about it, this is the only sane way for email to function without preauthentication.
The only major outlier to this is Outlook, which is still doing IP based reputation. And of course a long tail of small server operators that rely on legacy SPAM lists from decade ago and reject only legitimate emails and pass through plenty of Viagra ads.