Feb. 19, 2024, 3:43 p.m. | /u/Copper_Mind

cybersecurity www.reddit.com

Years ago and read and understand the concepts of spf, dkim, and dmarc. over the past few months, i've been setting up spf/dkim for the allowed senders we know about. But I read something recently that made me thing: DMARC is based on the envelope FROM address...

So if a bad actor was only header FROM spoofing, assuming the envelope from is legit and configured, that emails could come in as passing DMARC. When googling multiple sources referenced that SPF/DKIM …

actor address bad concepts cybersecurity dkim dmarc spf understand

CyberSOC Technical Lead

@ Integrity360 | Sandyford, Dublin, Ireland

Cyber Security Strategy Consultant

@ Capco | New York City

Cyber Security Senior Consultant

@ Capco | Chicago, IL

Sr. Product Manager

@ MixMode | Remote, US

Corporate Intern - Information Security (Year Round)

@ Associated Bank | US WI Remote

Senior Offensive Security Engineer

@ CoStar Group | US-DC Washington, DC