home.social

#emailspoofing — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #emailspoofing, aggregated by home.social.

fetched live
  1. I was testing our sender identification system and checked a mid-size ecommerce domain

    47 distinct senders in their DMARC reports, only 12 were authorized

    the rest? old trial ESPs, a former agency's Mailchimp account, two Chinese IPs spoofing their domain, and a dozen services they'd forgotten they'd onboarded

    most domains have no idea how many systems send as them

    dmarcguard.io/tools/dmarc-repo

    #DMARC #EmailSecurity #EmailSpoofing #SenderIdentification

  2. Bleeping Computer: Phishers abuse Google OAuth to spoof Google in DKIM replay attack. “In a rather clever attack, hackers leveraged a weakness that allowed them to send a fake email that seemed delivered from Google’s systems, passing all verifications but pointing to a fraudulent page that collected logins. The attacker leveraged Google’s infrastructure to trick recipients into accessing […]

    https://rbfirehose.com/2025/04/21/bleeping-computer-phishers-abuse-google-oauth-to-spoof-google-in-dkim-replay-attack/

  3. This website is terrific! It helped me troubleshoot an email issue that had been plaguing me for months. I wish I'd run across the site sooner. It's an integral part of my toolbox now.

    learndmarc.com

    #DMARC #EmailSpoofing

  4. Is your #domain susceptible to #emailspoofing? Find out using the tool Spoofy!

    Read about the origins of this tool and how it checks whether a list of domains (in bulk) can be spoofed based on #SPF & #DMARC records. bfx.social/3wOngXu