scams
logging some scams I see
§§§ Fake “undelivered email” notice
an email saying:
Roundcube Found Several Undelivered Messages 6/26/2024 5:14:20 p.m. Undelivered emails for i@shrik3.com You have up to 6 hanging message on i@shrik3.com. Retreive the emails into your local folder by using the Read Undelivered Emails button Read Undelivered Email Gateway i@shrik3.com Microsoft Corporation One Microsoft Way, Redmond, WA 98052, USA
… followed by a link, obviously fishing site.
It’s pretending to be myself by faking the header
From: i@shrik3.com
To: i@shrik3.com
This email is caught by the spam filter. But … it’s surprising that the email client does not alert for either of the following things
- the header claims a sender that doesn’t match the the originating server.
- the DKIM signature is missing or mismatching.
Luckily (?) there is a thunderbird plugin that check DKIM….
…but are we using DKIMs at all?
I quickily went through my inbox with the newly added DKIM checker. And (not to my surprise) most emails I got (even legit ones) has no valid DKIM….