this post was submitted on 26 Jul 2025
8 points (72.2% liked)

Privacy

8139 readers
303 users here now

A community for Lemmy users interested in privacy

Rules:

  1. Be civil
  2. No spam posting
  3. Keep posts on-topic
  4. No trolling

founded 2 years ago
MODERATORS
you are viewing a single comment's thread
view the rest of the comments
[–] MysteriousSophon21@lemmy.world 2 points 5 months ago

SPF won't help here because the attack specifically uses legitimate sending infrastructure - they're forwarding through a compromised Google Workspace account so the SPF check passes, while reusing a valid DKIM signature from a diferent message.