Jan Wildeboer 😷:krulorange:<p><a href="https://social.wildeboer.net/tags/NerdTalk" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>NerdTalk</span></a> Wow. A multi-step, sophisticated way of spoofing emails that pass SPF, DKIM, DMARC. Hardcore.</p><p>"And most importantly, the key trick is that you can put anything you want in the App Name field in Google"</p><p>Le sigh. That's where they put the email text. In the App Name field. Google can fix this by sanitising input better. </p><p><a href="https://easydmarc.com/blog/google-spoofed-via-dkim-replay-attack-a-technical-breakdown/" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">easydmarc.com/blog/google-spoo</span><span class="invisible">fed-via-dkim-replay-attack-a-technical-breakdown/</span></a></p><p><a href="https://social.wildeboer.net/tags/Spam" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Spam</span></a> <a href="https://social.wildeboer.net/tags/Phishing" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Phishing</span></a> <a href="https://social.wildeboer.net/tags/MailAdmin" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>MailAdmin</span></a></p>