b_b's horror cabinet of spam
Re: b_b's horror cabinet of spam
I can see how this would fool some people. They wrote in proper English for one, which makes it feel less scammy/spammy and it looks like they managed to find an SMTP server that still lets you spoof email addresses. Does your mail server not check SPF records, or did you turn that off for the lols? This could probably fool some non-technical people, but... like... did they even LOOK at this website? This is like a rabbit threatening a lion
¯\_(ツ)_/¯ It works on my machine...
- bad_brain
- Site Owner
- Posts: 11636
- Joined: 06 Apr 2005, 16:00
- 19
- Location: In your eye floaters.
- Contact:
Re: b_b's horror cabinet of spam
they are too 1337 to spoof, instead they simply put the @suck-o.com address into the sender name field....
that's why I love Sylpheed, other email clients do "show sender name (if set), if no sender name is set show address", while Sylpheed always shows name and address....also every kind of code is shown instead of processed.
of course my MX does DNS checks for SPF, DMARC and DKIM, but because there are STILL so many domains around that don't utilize those really useful mechanisms at all you can only safely reject mails with faulty records....but you have to let the ones with no records at all pass, else you'll have to spend a lot of time with client complaints and manual whitelisting.
that's why I love Sylpheed, other email clients do "show sender name (if set), if no sender name is set show address", while Sylpheed always shows name and address....also every kind of code is shown instead of processed.
of course my MX does DNS checks for SPF, DMARC and DKIM, but because there are STILL so many domains around that don't utilize those really useful mechanisms at all you can only safely reject mails with faulty records....but you have to let the ones with no records at all pass, else you'll have to spend a lot of time with client complaints and manual whitelisting.
Re: b_b's horror cabinet of spam
Got an email the other to my gmail account, which was a bounce email from Google, saying I tried to send something to someone who didn't exist . Never gotten one of those from or on gmail before, but I guess someone tried to send something in my name
"The best place to hide a tree, is in a forest"
- bad_brain
- Site Owner
- Posts: 11636
- Joined: 06 Apr 2005, 16:00
- 19
- Location: In your eye floaters.
- Contact:
Re: b_b's horror cabinet of spam
checked the headers? you can see them under"3-dot-thingy"->show original. feel free to post them with a burn after reading flag at https://code.suck-o.com/ and link me.
- bad_brain
- Site Owner
- Posts: 11636
- Joined: 06 Apr 2005, 16:00
- 19
- Location: In your eye floaters.
- Contact:
Re: b_b's horror cabinet of spam
check your script bro....
Re: b_b's horror cabinet of spam
ppffft what a rookie
"The best place to hide a tree, is in a forest"