You are viewing a plain text version of this content. The canonical link for it is here.
Posted to commits@spamassassin.apache.org by jh...@apache.org on 2018/07/03 19:35:10 UTC

svn commit: r1835014 - /spamassassin/trunk/rulesrc/sandbox/jhardin/20_misc_testing.cf

Author: jhardin
Date: Tue Jul  3 19:35:09 2018
New Revision: 1835014

URL: http://svn.apache.org/viewvc?rev=1835014&view=rev
Log:
Add subrule to test spamminess of HTML refresh redirect (seen in phishing/malware, also see bug 6784)

Modified:
    spamassassin/trunk/rulesrc/sandbox/jhardin/20_misc_testing.cf

Modified: spamassassin/trunk/rulesrc/sandbox/jhardin/20_misc_testing.cf
URL: http://svn.apache.org/viewvc/spamassassin/trunk/rulesrc/sandbox/jhardin/20_misc_testing.cf?rev=1835014&r1=1835013&r2=1835014&view=diff
==============================================================================
--- spamassassin/trunk/rulesrc/sandbox/jhardin/20_misc_testing.cf (original)
+++ spamassassin/trunk/rulesrc/sandbox/jhardin/20_misc_testing.cf Tue Jul  3 19:35:09 2018
@@ -2337,4 +2337,5 @@ describe   FRNAME_IN_MSG_NO_SUBJ      Fr
 score      FRNAME_IN_MSG_NO_SUBJ      3.500	# limit
 
 
+rawbody    __HTTP_REFRESH             /<meta\s[^>]{0,200}"refresh"/ism