Tools & TutorialsMEDIUM

Rspamd 4.0.0 - New Scan Protocol and Memory Savings Released

Featured image for Rspamd 4.0.0 - New Scan Protocol and Memory Savings Released
HNHelp Net Security·Reporting by Sinisa Markovic
Summary by CyberPings Editorial·AI-assisted·Reviewed by Rohit Rana
Ingested:
🎯

Basically, Rspamd 4.0.0 makes spam filtering faster and requires some setup changes.

Quick Summary

Rspamd 4.0.0 has launched, featuring a new scan protocol and memory optimizations. Users must follow migration steps for a smooth upgrade. This release enhances spam filtering efficiency significantly.

What Happened

The open-source spam filtering platform Rspamd has released version 4.0.0, which includes major updates to its infrastructure. This new version brings enhancements in the scan protocol, memory management, and configuration system. Notably, some changes are breaking, meaning users must take specific steps to migrate before upgrading. This release aims to improve performance and efficiency in spam filtering operations.

One of the most significant updates is the introduction of a new scan protocol. The /checkv3 endpoint replaces the previous method of using HTTP headers, now utilizing structured JSON or msgpack for metadata transport. This change enhances the way data is handled, allowing for more efficient requests and responses.

Who's Affected

The updates in Rspamd 4.0.0 will primarily affect system administrators and operators who manage spam filtering systems. Those using older versions of Rspamd will need to adapt to the new features and migration steps. The changes are particularly relevant for environments that rely on multi-worker deployments, as they can significantly impact memory usage and performance.

Additionally, users who have integrated Rspamd with external libraries, such as libfasttext, will need to adjust their configurations since the dependency has been removed in this release. The new built-in memory management system is designed to optimize performance across all worker processes.

What Data Was Exposed

While the release does not indicate any data exposure, the changes may affect how data is processed and stored. The new memory model and hash storage improvements aim to reduce the overall memory footprint, potentially saving between 500MB and 7GB of RAM in multi-worker setups. This optimization is crucial for maintaining efficient operations in environments that process high volumes of spam.

Moreover, the introduction of fuzzy hashes with multiple flags allows for more sophisticated detection of phishing attempts, enhancing the overall security posture of users relying on Rspamd for spam filtering.

What You Should Do

For those planning to upgrade to Rspamd 4.0.0, it is essential to follow the migration steps outlined by the developers. Operators must run the command rspamadm statistics_dump migrate to ensure data compatibility with the new version. It is also advisable to review the updated configuration settings, as the new templating system and HTTPS support may require adjustments to existing setups.

In summary, Rspamd 4.0.0 offers significant improvements and optimizations. However, users must be proactive in addressing the breaking changes to fully leverage the benefits of this new release.

🔒 Pro insight: The shift to a built-in memory model could drastically reduce resource consumption in large-scale deployments, enhancing Rspamd's appeal for enterprise use.

Original article from

HNHelp Net Security· Sinisa Markovic
Read Full Article

Related Pings

LOWTools & Tutorials

Best User Access Management Tools - Top Picks for 2026

Explore the best user access management tools for 2026! These tools enhance security and streamline user permissions, helping organizations protect sensitive data and ensure compliance.

Cyber Security News·
LOWTools & Tutorials

Elastic Security - Nine New Integrations Announced

Elastic Security Labs just launched nine new integrations! These tools boost cloud security, endpoint visibility, and email threat detection, helping teams respond to threats faster.

Elastic Security Labs·
MEDIUMTools & Tutorials

6 Critical Mistakes Undermining Cyber Resilience Explained

Organizations often make critical mistakes that weaken their cyber resilience. This article outlines six key errors and how to fix them for better security. Don't let silos hold you back.

CSO Online·
MEDIUMTools & Tutorials

CoBRA - Simplifying Mixed Boolean-Arithmetic Obfuscation

CoBRA simplifies Mixed Boolean-Arithmetic obfuscation, helping security engineers analyze malware and software protection schemes. It boasts a 99.86% success rate, making it a powerful tool in the cybersecurity toolkit. Available as a CLI tool, C++ library, and LLVM pass plugin.

Trail of Bits Blog·
LOWTools & Tutorials

Best Application Performance Monitoring Tools - 2026 Guide

Explore the top application performance monitoring tools for 2026. These tools are crucial for enhancing user experience and optimizing application efficiency. Learn which solutions fit your needs best.

Cyber Security News·
MEDIUMTools & Tutorials

EDR - Understanding Its Limits and the Need for Integration

EDR tools are crucial for detecting threats but have limitations. Organizations must integrate EDR with autonomous IT management for better visibility and faster responses. This integration is key to enhancing cybersecurity resilience.

SC Media·