Skip to content
Vol. 1 · Ed. 2026
CyberGlossary
Entry № 645

Mail Bomb

What is Mail Bomb?

Mail BombAn email-based denial-of-service attack that floods a mailbox or mail server with high volume or large messages to overwhelm storage, processing, or attention.


Mail bombing (email bombing) sends thousands to millions of messages at a target address, often by subscribing the victim to many newsletters and confirmation services. Variants include simple high-volume floods, zip-bomb attachments that explode on antivirus or preview, list-linking (subscription bombing) used to drown out fraud-alert emails after account compromise, and reply-all storms in enterprises. Effects include filled mailboxes, slow or unusable mail clients, missed alerts, and exhausted mail-server resources. Defences: rate limiting per recipient, anti-abuse on sign-up forms (CAPTCHA, double opt-in, IP reputation), spam filters with anomaly detection, separate high-priority alert channels, and automated quarantine for sudden volume spikes.

Examples

  1. 01

    Subscribing a victim's address to thousands of newsletters to bury a bank fraud alert after stealing their card.

  2. 02

    Sending a zip-bomb attachment that exhausts a mail gateway's scanner.

Frequently asked questions

What is Mail Bomb?

An email-based denial-of-service attack that floods a mailbox or mail server with high volume or large messages to overwhelm storage, processing, or attention. It belongs to the Attacks & Threats category of cybersecurity.

What does Mail Bomb mean?

An email-based denial-of-service attack that floods a mailbox or mail server with high volume or large messages to overwhelm storage, processing, or attention.

How does Mail Bomb work?

Mail bombing (email bombing) sends thousands to millions of messages at a target address, often by subscribing the victim to many newsletters and confirmation services. Variants include simple high-volume floods, zip-bomb attachments that explode on antivirus or preview, list-linking (subscription bombing) used to drown out fraud-alert emails after account compromise, and reply-all storms in enterprises. Effects include filled mailboxes, slow or unusable mail clients, missed alerts, and exhausted mail-server resources. Defences: rate limiting per recipient, anti-abuse on sign-up forms (CAPTCHA, double opt-in, IP reputation), spam filters with anomaly detection, separate high-priority alert channels, and automated quarantine for sudden volume spikes.

How do you defend against Mail Bomb?

Defences for Mail Bomb typically combine technical controls and operational practices, as detailed in the full definition above.

What are other names for Mail Bomb?

Common alternative names include: Email bombing, Subscription bombing, List bombing.

Related terms