Emailsecurity

Protecting email systems, data, and identities from abuse.

Posts for this tag
All posts
Google.com Scam Sent via Gmail API - DMARC Passed, No Account Compromise

A scam email sent from @google.com passed SPF, DKIM, and DMARC without a compromised account. Here’s what it reveals about modern email threats.

Google.com Scam Sent via Gmail API - DMARC Passed, No Account Compromise
What DMARC Really Reveals About Real Estate Email Security

A real-world snapshot of what DMARC exposes in real estate email systems and why many organizations choose to ignore the warning signs.

What DMARC Really Reveals About Real Estate Email Security
Phishing Attacks Highlight Need for Mandatory Email Security Training

Employees lacking phishing awareness risk credential compromise, even from fully authenticated DKIM/SPF emails.

Phishing Attacks Highlight Need for Mandatory Email Security Training
How Misconfigured DMARC Can Enable Email-Based DoS Attacks

Wildcard EDV misconfigurations let attackers flood inboxes with DMARC reports, disrupting email flow.

How Misconfigured DMARC Can Enable Email-Based DoS Attacks
Mailchimp SPF Misconfigurations Can Expose Domains to Spoofing

Including Mailchimp IPs in root SPF unnecessarily exposes domains to spoofing despite strict DMARC policies.

Mailchimp SPF Misconfigurations Can Expose Domains to Spoofing
Why GoDaddy’s Enforced DMARC Policies Raise Serious Security and Privacy Concerns

Registrar-enforced DMARC breaks email delivery and exposes sensitive reporting data to third parties.

Why GoDaddy’s Enforced DMARC Policies Raise Serious Security and Privacy Concerns
Expanding From Real Estate to Enterprise Email Security and Deliverability

Started in real estate; now offering email security and deliverability services across all industries.

Expanding From Real Estate to Enterprise Email Security and Deliverability