The abuse scanner is a project which will monitor a mailbox and periodically scan it for reported (abusive) skylinks.
The scanner used a MongoDB database in which it persists 3 types of entities:
The database name is abuse-scanner
The scanner is comprised of 4 main modules:
fetcher: downloads the emails from the mailboxparser: parses abusive skylinks and tags from the email bodyblocker: blocks the skylinks using the blocker APIfinalizer: finalizes the emailsreporter: reports csam abuse to NCMECThe modules communicate through a shared database and a series of booleans
that define whether a certain module has handled the email in question, e.g.
parsed, blocked and finalized.
All emails that are tagged with the csam are emails from which we want to
report the skylinks to NCMEC
In order for this to happen, the ABUSE_NCMEC_REPORTING_ENABLED has to be set
to true and all NCMEC related environment variables have to be filled in
accordingly.
ABUSE_LOG_LEVELABUSE_MAILADDRESSABUSE_MAILBOXABUSE_NCMEC_REPORTING_ENABLEDABUSE_PORTAL_URL, e.g. https://siasky.netABUSE_SPONSORSKYNET_ACCOUNTS_HOST, e.g accountsSKYNET_ACCOUNTS_PORT, e.g 3000BLOCKER_HOSTBLOCKER_PORTEMAIL_SERVEREMAIL_USERNAMEEMAIL_PASSWORDNCMEC_USERNAMENCMEC_PASSWORDNCMEC_REPORTER_FIRSTNAMENCMEC_REPORTER_LASTNAMENCMEC_REPORTER_EMAILNCMEC_DEBUGSERVER_DOMAINSKYNET_DB_HOSTSKYNET_DB_PORTSKYNET_DB_USERSKYNET_DB_PASSContent type
Image
Digest
sha256:2a977b17e…
Size
101.9 MB
Last updated
about 4 years ago
docker pull skynetlabs/abuse-scanner