= Anti-phish 'fake URL' rule idea =
''I have a great idea for an anti-phishing rule, detecting links that claim to be linking to a different URL than their real target! Will it work?''
Take a look at [[http://issues.apache.org/SpamAssassin/show_bug.cgi?id=4255|bug 4255]] in our Bugzilla -- this idea has been tried in many forms, and mostly unsuccessfully. A lot of nonspam senders use this, for some reason.
Here are some examples of real-world false positives:
{{{
https://
www.americanexpress.com/estatement/?12345
https://www.hilton.com/
en/ww/email/tab_email_subscriptions.jhtml
}}}
If you'd like to comment further, please do so [[http://issues.apache.org/SpamAssassin/show_bug.cgi?id=4255|on bug 4255]].