home.social

#dmarc — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #dmarc, aggregated by home.social.

fetched live
  1. [Перевод] Self-hosted почта на arch linux, postfix, dovecot и let's encrypt

    В этой статье я покажу, как настроить свой почтовый сервер для аккаунтов локальных пользователей без веб-морд, docker-ов, телеграм-помоек и LLM-высеров.

    habr.com/ru/articles/1070196/

    #archlinux #postfix #dovecot #dkim #dmarc #selfhosted #email #imap #smtp #mail

  2. How to Deploy #Mailman Suite on #Debian #VPS for Automated Mailing List Management This article provides a detailed step-by-step guide demonstrating how to deploy Mailman Suite on Debian VPS for ...
    Continued 👉 #opendkim #dmarc #selfhosted #opensource #spf #selfhosting #reverseproxy #django #dkim

    How to Deploy Mailman Suite on...

  3. Gdy zabezpieczenia pomagają spamerom: Jak przejąć reputację domeny bez łamania kryptografii?

    Otwierasz skrzynkę pocztową i widzisz oficjalne powiadomienie bezpieczeństwa od Google. Wszystko wygląda w 100% wiarygodnie. Systemy pocztowe wyświetlają zielony ptaszek, a nagłówki potwierdzają sukces: dkim=pass Klikasz w link i bezwiednie wpadasz w pułapkę phishingu. Jak to możliwe? Żaden haker nie wykradł haseł, nie przejął serwerów Google ani nie złamał szyfrowania....

    #Aktualności #Teksty #Apple #Atak #Dkim #Dmarc #Paypal #Protonmail #Replay

    sekurak.pl/gdy-zabezpieczenia-

  4. SECUSO Research @SECUSO_Research@bawü.social ·

    💬 Der Deutsche Akademische Auslandsdienst hat ein Interview mit Prof. Dr. Melanie Volkamer, #SECUSO, zum Thema #Phishing geführt:

    🔎 Trotz zahlreicher Sensibilisierungsmaßnahmen ist es nicht verwunderlich, dass Phishing immer noch ein großes Problem ist. Viele Maßnahmen geben nur allgemeine Ratschläge, obwohl Erkennungsmerkmale wie schlechte Grammatik oder Rechtschreibung zunehmend an Bedeutung verlieren. Wichtig deshalb: Webadressen unbedingt vor dem Anklicken prüfen. Tools wie #Torpedo können dabei helfen. Auch das Umsetzen technischer Maßnahmen wie #DMARC ist wichtig, um Nutzer:innen zum Beispiel vor #Spoofing zu schützen.

    👉 Zum Beitrag: daad.de/de/der-daad/daad-journ

  5. 🥱 Oh, joy! Yet another riveting saga about email authentication that only triples the #confusion. 🤯 Because who wouldn't want to embark on a thrilling adventure with acronyms like #SPF, #DKIM, and DMARC—which sound more like a malfunctioning keyboard than a digital security strategy? 🖥️📧
    senderledger.com/articles/one- #emailauthentication #DMARC #cybersecurity #HackerNews #ngated

  6. RE: fosstodon.org/@SocketSecurity/

    I'm convinced that we have reached #AGI: allegedly an "agent" managed to send an email that fulfilled SPF, DKIM, DANE, MTA-STS, and DMARC and thus was not discarded by Microsofts and Gmails of this world.

    #AGI #AI #LLM #SPF #DKIM #DANE #MTASTS #DMARC

  7. How to Deploy #Mailman Suite on #Debian #VPS for Automated Mailing List Management This article provides a detailed step-by-step guide demonstrating how to deploy Mailman Suite on Debian VPS for ...
    Continued 👉 #opendkim #dmarc #selfhosting #reverseproxy #opensource #selfhosted #spf #dkim #django

    How to Deploy Mailman Suite on...

  8. How to Deploy #Mailman Suite on #Debian #VPS for Automated Mailing List Management This article provides a detailed step-by-step guide demonstrating how to deploy Mailman Suite on Debian VPS for automated mailing list management. Mailman Suite includes Mailman Core, #Postorius (web UI), #HyperKitty (archiver), and the Mailman Web UI integration.
    What is Mailman Suite? ...
    Continued 👉 blog.radwebhosting.com/deploy- #selfhosted #dmarc #dkim #django #opensource #selfhosting #spf #opendkim #reverseproxy

  9. Ich hab dieser Tage die #DMARC Policy bei einigen Domains von quarantine auf reject umgestellt und bin njn auf die eintrudelnden Reports gespannt…

    #selhosting #mailserver

  10. Oh, look! Another thrilling tale about #DMARC, saving us from emails we never wanted and threats we don’t understand 🙄. But don't worry—this article manages to make email security as riveting as watching paint dry while they shamelessly plug their product 🤦‍♂️. Spoiler: It won’t protect you from bad writing! 📧🔒
    senderledger.com/articles/what #EmailSecurity #CyberThreats #ProductPlug #EmailSafety #HackerNews #ngated

  11. Как отправлять письма, чтобы не улетать в спам: DKIM-подпись, прогрев IP и DNS-грабли

    Транзакционные письма — подтверждения регистрации, сброс пароля, чеки — кажутся простейшей задачей: подключил SMTP, вызвал send(), готово. Ровно до момента, когда письма начинают тихо улетать в спам Mail.ru и Яндекса, а ты не понимаешь почему: код не менялся, ошибок нет, письма «отправлены». Дело почти никогда не в коде отправки. Дело в трёх DNS-записях, репутации IP-адреса и криптоподписи, которую надо собрать руками правильно. Я строю свой сервис транзакционной почты и разобрал всю эту машинерию до винтика. В статье: — DKIM своими руками: генерация ключа, каноникализация relaxed по RFC 6376, почему порядок подписываемых заголовков важен и где чаще всего ломается подпись; — три DNS-записи (SPF, DKIM, DMARC), которые решают всё, и что каждая делает; — прогрев IP: почему нельзя слать 50 тысяч писем с нового адреса, лестница лимитов 50 → 500 → 5000 → 50000 и пороги репутации; — suppression-лист и DMARC-отчёты как единственное зеркало вашего домена. И кульминация — реальная грабля, на которой я обжёгся: две абсолютно правильные SPF-записи на одном домене, каждая валидна по отдельности, а вместе ломают доставляемость всего домена в ноль. Разбираю, почему так происходит и как чинится. Честно про статус: сервис в открытой бете, движок построен, а реальную статистику доставляемости наберём на первых отправках — прогрев по определению требует недель живого трафика. Поэтому статья про архитектуру и грабли, а не про достигнутые проценты.

    habr.com/ru/articles/1061824/

    #email #доставляемость #DKIM #SPF #DMARC #транзакционная_почта #прогрев_IP #Mailru #Яндекс #спамфильтр

  12. DMARC has been public since 2012. 68.4% of company domains still don't enforce it. The standard exists, the tooling exists — the gap is organizational. Email security isn't a technical problem anymore, it's a priority problem. #Security #Email #DMARC #Infrastructure #OpenSource

  13. On what planet would people not bother setting a simple switch to tell email servers to discard email claiming to be from their domains but aren't? You know to protect unsuspecting victims, protect the reputation of their domains, and prevent their domains from being shut down permanently for spam?

    Apparently Earth.

    People who leave the default option as it being OK to deliver spoofed email from their domain even if the email is screaming that it's a spoof, well, you know, deserve to lose their domain names, IMHO. What do you think?

    ciphercue.com/blog/dmarc-enfor

    #CyberSecurity #DMARC #SPF #DKIM #EmailSecurity

  14. DMARC Has Been Public Since 2012. 68.4% of Company Domains Still Don't Enforce It. - CipherCue

    Always surprised by the number of larger organisations with workforces that are victims of phishing attacks sometimes still don't seem to maximise use of things like DMARC in their email setups. A bit of faffing with DNS entries and careful planning needed but really helpful at reducing the reach/impact of forged emails that fool so many.

    ciphercue.com/blog/dmarc-enfor

    #DMARC #Email

  15. 🚨 BREAKING NEWS: The internet is shocked! 🚨 68.4% of companies still can't handle basic email security a mere 11 YEARS after DMARC's debut! 🎉 Let's all pretend to be surprised while they fumble with their DNS records like it's rocket science! 😂
    ciphercue.com/blog/dmarc-enfor #internetsecurity #emailsecurity #DMARC #cybersecurity #dnsrecords #shockingnews #HackerNews #ngated

  16. DMARC-театр: 117 тысяч доменов опубликовали запись, которая никуда не отчитывается и ничего не запрещает

    Анализ DNS-снэпшота OpenINTEL за 2026-07-25 TL;DR. В январе я публиковал общий срез email-инфраструктуры Tranco top-1M — кто на чём принимает и шлёт почту. Самый частый вопрос в комментариях был про DMARC: «ну хорошо, запись есть у двух третей, а толку?» Отвечаю развёрнуто. Из 468 749 доменов top-1M, опубликовавших DMARC, реально применяют политику (p=quarantine/reject) 49.31%. Ещё 25.61% сидят на p=none, но хотя бы получают агрегатные отчёты — это легитимная фаза внедрения. А 25.04% — 117 384 домена — опубликовали запись, у которой p=none и нет ни одного рабочего адреса для отчётов. Такая запись не запрещает ничего, не сообщает никому ничего и существует в DNS исключительно ради галочки. При этом формально во всех отчётах и сканерах эти домены проходят как «DMARC: yes». Ниже — откуда взялся этот слой, чьи подписи в нём видны, почему доля enforcement при этом падает , и что произойдёт с половинчатыми политиками, когда получатели перейдут на DMARCbis.

    habr.com/ru/articles/1063220/

    #dns #dmarc #spf #dkim

  17. How to Deploy #Mailman Suite on #Debian #VPS for Automated Mailing List Management This article provides a detailed step-by-step guide demonstrating how to deploy Mailman Suite on Debian VPS ...
    Continued 👉 #django #spf #dkim #opendkim #selfhosting #reverseproxy #opensource #selfhosted #dmarc

    How to Deploy Mailman Suite on...

  18. How to Deploy #Mailman Suite on #Debian #VPS for Automated Mailing List Management This article provides a detailed step-by-step guide demonstrating how to deploy Mailman Suite on Debian VPS for automated mailing list management. Mailman Suite includes Mailman Core, #Postorius (web UI), #HyperKitty (archiver), and the Mailman Web UI integration.
    What is Mailman Suite? ...
    Continued 👉 blog.radwebhosting.com/deploy- #dkim #reverseproxy #django #opendkim #spf #selfhosting #selfhosted #opensource #dmarc