CRM Email Rejections Caused by Missing DKIM and DMARC Settings

June 11, 2025

Missing DKIM signatures combined with strict DMARC policies caused CRM emails to bounce, leaving systems vulnerable to spoofing.

CRM Email Rejections Caused by Missing DKIM and DMARC Settings

I was recently reached out to by someone experiencing an email rejection issue in their CRM system. Nobody in their team could send emails because once they hit the send button, the email, instead of being sent, would change its status to 'bounced'. What a mystery lol 🤔

Turns out, their DMARC policy was set to 'reject' and the DKIM signatures were nowhere to be found. I expressed my admiration to the DMARC policy they had set and mentioned that getting those DKIM signatures in place would have the issue sorted.

And what next? Both me and the DMARC 'reject' were left in the dust & they swung open the doors to the world of spoofing with 'p=none'.

Can’t wait to see the 'problem-solving' skill added to their CV 🙃

Related posts
All posts
Coordinated Subdomain Takeover Campaign Targeting US Universities

Attackers are hijacking abandoned .edu subdomains via orphaned CNAME records, serving spam under trusted university domains and exploiting SEO authority.

Coordinated Subdomain Takeover Campaign Targeting US Universities
Cloudflare's DMARC Documentation Exposed an Unregistered Domain And Dozens of Organizations Paid the Price

How an unregistered domain in Cloudflare's DMARC documentation silently exposed infrastructure data from dozens of organizations.

Cloudflare's DMARC Documentation Exposed an Unregistered Domain And Dozens of Organizations Paid the Price
FinTech AccessPay Exposed Internal Email Infrastructure Data for Years

A misconfigured DMARC record sent sensitive email infrastructure data to an unregistered domain, creating a long-term exposure risk.

FinTech AccessPay Exposed Internal Email Infrastructure Data for Years