"someone can decide to start spoofing"

What kind of spoofing are you talking about? Attempting to spoof the headers is common, but no blackhole list looks at that - they blacklist based on the IP of the machine the spam is coming from.

You may be right on this ... spoofing is still an aggravation because of the bouncing. Most of the time I haven't been able to find out exactly _why_ a particular provider has an issue (not blacklists), only ask for them to change their mind.

