---
title: "Anti-Spam Filters and How They Work | DuoCircle"
description: "Everyone will acknowledge that spam emails are a constant nuisance."
image: "https://www.duocircle.com/images/og-default.png"
canonical: "https://www.duocircle.com/blog/spam-filtering/anti-spam-filters-and-how-they-work/"
---

Quick Answer

Spam filters fall into two main families. List-based filters use blacklists, whitelists, or greylists (which delays unknown senders and accepts the message only if the sender retries). Content-based filters scan words, phrases, and headers using rule sets and machine learning to score whether a message is spam.

Share 

[ ](https://www.linkedin.com/sharing/share-offsite/?url=undefined%2Fblog%2Fspam-filtering%2Fanti-spam-filters-and-how-they-work%2F "Share on LinkedIn") [ ](https://twitter.com/intent/tweet?text=Anti-Spam%20Filters%20and%20How%20They%20Work&url=undefined%2Fblog%2Fspam-filtering%2Fanti-spam-filters-and-how-they-work%2F "Share on X/Twitter") [ ](https://www.facebook.com/sharer/sharer.php?u=undefined%2Fblog%2Fspam-filtering%2Fanti-spam-filters-and-how-they-work%2F "Share on Facebook") [ ](https://reddit.com/submit?url=undefined%2Fblog%2Fspam-filtering%2Fanti-spam-filters-and-how-they-work%2F&title=Anti-Spam%20Filters%20and%20How%20They%20Work "Share on Reddit") [ ](mailto:?subject=Anti-Spam%20Filters%20and%20How%20They%20Work&body=Check out this article: undefined%2Fblog%2Fspam-filtering%2Fanti-spam-filters-and-how-they-work%2F "Share via Email") 

![Anti-Spam Filters](https://media.mailhop.org/duocircle/images/2020/06/email-sending-services-7776.jpg) 

_Everyone will acknowledge that spam emails are a constant nuisance_. Spam remains a regular interruption in our daily lives, where we have to spend time to open and delete those emails. Though not always, they also pose **severe threats** to our systems and can cripple our networks. Spamming in today’s digital era is a billion-dollar industry where companies even go so far as to use this as a professional technique to promote their services.

To avoid such spam, internet users resort to various [spam filtering](/email/spam-filtering) techniques and spam-free channels to curb this practice. There are different categories of filtering options to choose from. We will be discussing the **best spam filtering** methods which will cover the scope of the current spam problems.

## List-Based Anti-Spam Filters

_This type of spam filtering works by using a preset list of senders marked as either spammers or trusted senders_. The lists are created by the user or an organization’s system administrator. Only the messages from trusted origins are allowed to enter your email ID.

### Blacklist

In this [anti-spam filtering service](/email/spam-filtering), a preset list of potentially **spammy IPs** and email addresses are built, and the system works by blocking messages from those in the list and allowing messages from those senders not in the blacklist to get through. When a new message arrives, the spam filter cross-checks it with the list, and _if the message is on the blacklist, the message is spammed and rejected_.

[![send emails](https://media.mailhop.org/duocircle/images/2020/06/email-smtp-service-7776.jpg)](/spam-filtering/anti-spam-filters-and-how-they-work/attachment/file%5F665)

### Whitelist

This **anti-spam filter** works almost precisely opposite to the technique of blacklisting. With this type of filter, the user keeps a list of users allowed to send emails. _Most spam filters use this as an additional feature apart from the primary blacklisting method._

### Greylist

This is a new filtering method in **list-based filters**. As the name implies, it works somewhere in between the two list-based methods above. It has neither blacklists nor whitelists; instead, _it works on the principle that many spammers only try to send junk emails by sending them in bulk once_. [Greylist](https://en.wikipedia.org/wiki/Greylisting%5F%28email%29) treats any unknown senders as potential spammers, or it puts them in the greylist. It sends off any mail from anonymous mailers, if the server or sender attempts sending the mail for a second time, the mail is allowed to enter your inbox.

## Content-Based Anti-Spam Filters

Instead of blocking or allowing emails from a particular IP address or email ID, _content-based filters scan and evaluate words and phrases in the emails to analyze its authenticity_. They are also known as **rule-based filters** as they review the content of email messages using [artificial intelligence](https://www.yourictmagazine.com/apps-software/467-google-s-spam-filters-to-use-artificial-intelligence-ai-to-curb-those-annoying-spam-emails.html) and machine learning tools according to preset rules and policies to decide whether they are spam or not.

### Word-based filters

A simple content-based filter, it blocks emails containing certain pre-defined words. There are specific terms commonly used in spam messages which are not very suitable for or often used in personal or business communications. _This word list needs to be created and updated regularly_.

This type of filters tends to generate false positives sometimes, so we have to be careful while choosing the terms to be included in the list. For instance, if you select the word ‘discount’ to be junked, you can block out even legitimate emails containing that term along with spam.

[![legitimate emails](https://media.mailhop.org/duocircle/images/2020/06/windows-smtp-service-7776.jpg)](/spam-filtering/anti-spam-filters-and-how-they-work/attachment/boy-sending-mail-on-laptop)

### Heuristic Filters

This type of [filters is a step-up](http://www.spam-site.com/heuristic-spam-filter.shtml) from simple word-based filters. _They don’t take a single word into consideration but various terms instead_. They use algorithms to **identify spam terms** and score emails based on such contents. Points are assigned to terms according to their usage in spam emails. While suspicious words are high on the score, ordinary words which are also used in legitimate emails score minor points. The filter adds up the points, and if the score reaches a certain pre-established point, it considers the email to be spam and directs it to quarantine.

_Heuristic filters are efficient in minimizing email delay due to filtering_. However, they also tend to cause false positives. Smart attackers may even learn to bypass the filter by using carefully chosen terms in their messages.

### Bayesian Filters

One of the most advanced methods of content-based filters. They use the logic of mathematical probability to determine the legitimacy of a mail. Initially, the system administrator has to train the [spam filter](/email/spam-filtering) or show it how to **identify spam emails** with manual flagging. Over time, the filter learns and builds word lists, legitimate and spam. For instance, if a word has appeared a number of times in a spam message, there is a higher chance of it being spam. Thus it adds it in the spam list. _The list is build up continually over a period of time_. Later on, it works on its own by scanning emails and evaluating their contents against its word lists to determine their authenticity.

Even though the [Bayesian filter](https://blog.malwarebytes.com/security-world/2017/02/explained-bayesian-spam-filtering/) is very effective and efficient in the long run, it takes a lot of patience on the part of the system admin. You have to patiently and manually flag and delete spam messages before it becomes capable of working efficiently on its own.

![Brad Slavin](https://media.mailhop.org/dmarcreport/images/team/brad-slavin.jpg) 

Brad Slavin 

General Manager

General Manager at DuoCircle. Product strategy and commercial lead across the email security portfolio.

## Secure your email infrastructure

Protect, authenticate, and deliver. Contact our team to find the right solution.

[Contact Sales](/contact/) [Explore Products](/products/) 

## Related Articles

[  Spam Filtering 5m  A Guide On Email Gateway: What It Is And The Importance Of A Secure Email Gateway  Mar 4, 2021 ](/blog/spam-filtering/a-guide-on-email-gateway-what-it-is-and-the-importance-of-a-secure-email-gateway/)[  Spam Filtering 1m  CERT Advisory Symantec and Norton Critical Vulnerability  Jul 6, 2016 ](/blog/spam-filtering/cert-advisory-symantec-norton-critical-vulnerability/)[  Spam Filtering 3m  Cloud-Based Spam Filtering Protects Your Company  Sep 10, 2018 ](/blog/spam-filtering/cloud-based-spam-filtering-protects-your-company/)[  Spam Filtering 2m  Custom Spam levels  Jun 5, 2015 ](/blog/spam-filtering/custom-spam-levels/)

```json
{"@context":"https://schema.org","@type":"Organization","name":"DuoCircle LLC","url":"https://www.duocircle.com","logo":{"@type":"ImageObject","url":"https://www.duocircle.com/images/duocircle-logo.png"},"description":"DuoCircle is a portfolio of specialized email products covering protection, authentication, delivery, and routing. We deliver about 90% of category-leader capability at roughly half the price, backed by experts who own the outcome. Trusted by 50,000+ organizations since 2014.","subOrganization":[{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138898167","name":"DMARC Report","url":"https://dmarcreport.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897474","name":"AutoSPF","url":"https://autospf.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897912","name":"Phish Protection","url":"https://www.phishprotection.com"}],"sameAs":["https://www.linkedin.com/company/duocircle","https://x.com/duocirclellc","https://www.facebook.com/duocirclellc","https://www.g2.com/products/phish-protection-by-duocircle/reviews","https://github.com/duocircle","https://www.crunchbase.com/organization/duocircle-llc"],"contactPoint":{"@type":"ContactPoint","contactType":"customer support","url":"https://support.duocircle.com"},"knowsAbout":["Email Security","Email Authentication","SPF","DKIM","DMARC","Phishing Protection","Spam Filtering","SMTP Relay","Email Deliverability","Email Forwarding"]}
```

```json
{"@context":"https://schema.org","@type":"WebSite","name":"DuoCircle LLC","url":"https://www.duocircle.com","description":"DuoCircle is a portfolio of specialized email products covering protection, authentication, delivery, and routing. We deliver about 90% of category-leader capability at roughly half the price, backed by experts who own the outcome. Trusted by 50,000+ organizations since 2014.","publisher":{"@type":"Organization","name":"DuoCircle LLC","url":"https://www.duocircle.com","logo":{"@type":"ImageObject","url":"https://www.duocircle.com/images/duocircle-logo.png"},"description":"DuoCircle is a portfolio of specialized email products covering protection, authentication, delivery, and routing. We deliver about 90% of category-leader capability at roughly half the price, backed by experts who own the outcome. Trusted by 50,000+ organizations since 2014.","subOrganization":[{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138898167","name":"DMARC Report","url":"https://dmarcreport.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897474","name":"AutoSPF","url":"https://autospf.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897912","name":"Phish Protection","url":"https://www.phishprotection.com"}]}}
```

```json
[{"@context":"https://schema.org","@type":"BlogPosting","headline":"Anti-Spam Filters and How They Work","description":"Everyone will acknowledge that spam emails are a constant nuisance.","url":"https://www.duocircle.com/blog/spam-filtering/anti-spam-filters-and-how-they-work/","datePublished":"2020-06-19T20:46:01.000Z","dateModified":"2025-04-23T15:17:37.000Z","dateCreated":"2020-06-19T20:46:01.000Z","author":{"@type":"Person","@id":"https://www.duocircle.com/authors/brad-slavin/#person","name":"Brad Slavin","url":"https://www.duocircle.com/authors/brad-slavin/","jobTitle":"General Manager","description":"Brad Slavin runs DuoCircle, the company behind DMARC Report, AutoSPF, Phish Protection, and Mailhop. His focus is product strategy, customer relationships, and the commercial and compliance side of email authentication (DPAs, SLAs, enterprise procurement).","image":"https://media.mailhop.org/dmarcreport/images/team/brad-slavin.jpg","knowsAbout":["Email Security Strategy","SaaS Product Management","Enterprise Compliance","Customer Success","Email Deliverability Business"],"worksFor":{"@type":"Organization","name":"DuoCircle LLC","url":"https://www.duocircle.com"},"sameAs":["https://www.linkedin.com/in/bradslavin"]},"publisher":{"@type":"Organization","name":"DuoCircle LLC","url":"https://www.duocircle.com","logo":{"@type":"ImageObject","url":"https://www.duocircle.com/images/duocircle-logo.png"},"description":"DuoCircle is a portfolio of specialized email products covering protection, authentication, delivery, and routing. We deliver about 90% of category-leader capability at roughly half the price, backed by experts who own the outcome. Trusted by 50,000+ organizations since 2014.","subOrganization":[{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138898167","name":"DMARC Report","url":"https://dmarcreport.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897474","name":"AutoSPF","url":"https://autospf.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897912","name":"Phish Protection","url":"https://www.phishprotection.com"}]},"mainEntityOfPage":{"@type":"WebPage","@id":"https://www.duocircle.com/blog/spam-filtering/anti-spam-filters-and-how-they-work/"},"articleSection":"spam-filtering","keywords":"","wordCount":849,"image":{"@type":"ImageObject","url":"https://media.mailhop.org/duocircle/images/2020/06/email-sending-services-7776.jpg","caption":"Anti-Spam Filters","width":900,"height":600},"speakable":{"@type":"SpeakableSpecification","cssSelector":[".answer-block","h1"]}},{"@context":"https://schema.org","@type":"BreadcrumbList","itemListElement":[{"@type":"ListItem","position":1,"name":"Blog","item":"https://www.duocircle.com/blog/"},{"@type":"ListItem","position":2,"name":"Spam Filtering"},{"@type":"ListItem","position":3,"name":"Anti-Spam Filters and How They Work","item":"https://www.duocircle.com/blog/spam-filtering/anti-spam-filters-and-how-they-work/"}]}]
```

```json
{"@context":"https://schema.org","@type":"BreadcrumbList","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https://www.duocircle.com/"},{"@type":"ListItem","position":2,"name":"Blog","item":"https://www.duocircle.com/blog/"},{"@type":"ListItem","position":3,"name":"Spam Filtering","item":"https://www.duocircle.comundefined"},{"@type":"ListItem","position":4,"name":"Anti-Spam Filters and How They Work","item":"https://www.duocircle.com/blog/spam-filtering/anti-spam-filters-and-how-they-work/"}]}
```

```json
{"@context":"https://schema.org","@type":"BlogPosting","headline":"Anti-Spam Filters and How They Work","description":"Everyone will acknowledge that spam emails are a constant nuisance.","url":"https://www.duocircle.com/blog/spam-filtering/anti-spam-filters-and-how-they-work/","datePublished":"2020-06-19T20:46:01.000Z","dateModified":"2025-04-23T15:17:37.000Z","dateCreated":"2020-06-19T20:46:01.000Z","author":{"@type":"Person","@id":"https://www.duocircle.com/authors/brad-slavin/#person","name":"Brad Slavin","url":"https://www.duocircle.com/authors/brad-slavin/","jobTitle":"General Manager","description":"Brad Slavin runs DuoCircle, the company behind DMARC Report, AutoSPF, Phish Protection, and Mailhop. His focus is product strategy, customer relationships, and the commercial and compliance side of email authentication (DPAs, SLAs, enterprise procurement).","image":"https://media.mailhop.org/dmarcreport/images/team/brad-slavin.jpg","knowsAbout":["Email Security Strategy","SaaS Product Management","Enterprise Compliance","Customer Success","Email Deliverability Business"],"worksFor":{"@type":"Organization","name":"DuoCircle LLC","url":"https://www.duocircle.com"},"sameAs":["https://www.linkedin.com/in/bradslavin"]},"publisher":{"@type":"Organization","name":"DuoCircle LLC","url":"https://www.duocircle.com","logo":{"@type":"ImageObject","url":"https://www.duocircle.com/images/duocircle-logo.png"},"description":"DuoCircle is a portfolio of specialized email products covering protection, authentication, delivery, and routing. We deliver about 90% of category-leader capability at roughly half the price, backed by experts who own the outcome. Trusted by 50,000+ organizations since 2014.","subOrganization":[{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138898167","name":"DMARC Report","url":"https://dmarcreport.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897474","name":"AutoSPF","url":"https://autospf.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897912","name":"Phish Protection","url":"https://www.phishprotection.com"}]},"mainEntityOfPage":{"@type":"WebPage","@id":"https://www.duocircle.com/blog/spam-filtering/anti-spam-filters-and-how-they-work/"},"articleSection":"spam-filtering","keywords":"","wordCount":849,"image":{"@type":"ImageObject","url":"https://media.mailhop.org/duocircle/images/2020/06/email-sending-services-7776.jpg","caption":"Anti-Spam Filters","width":900,"height":600},"speakable":{"@type":"SpeakableSpecification","cssSelector":[".answer-block","h1"]}}
```
