QUOTE (thedude @ Jun 16 2008, 07:53 PM)

To make sure I understand this correctly:
By reverse NDR attacks, I assume you mean someone sends tons of email to a system that will generate a NDR report. The NDR report goes to the victim who's email address has been spoofed by the attacker correct?
If this is the case, then theres not really much you can do besides hoping that administrator of the other email server does not send out NDR reports.
or you can block emails from the other system temporarily.