▲ | JoshTriplett 2 days ago | |||||||||||||||||||||||||||||||
> always be suspicious, even if the email is from a trusted domain and dkim/dmarc/spf all pass This was the default state of email for a long time, and is still the level of caution some people apply to email: never trust `From`. | ||||||||||||||||||||||||||||||||
▲ | globular-toast 2 days ago | parent [-] | |||||||||||||||||||||||||||||||
I've blown people's minds by spoofing "From" before. It's amazing the completely unwarranted level of trust people have in things. I tell people it's no different from me typing up a letter and putting "love from Mum" at the bottom. I blame shiny email clients like Outhouse etc. It's really dangerous to make something look like a better system than it is. If email were still viewed as plain text I don't think it would be seen the same. | ||||||||||||||||||||||||||||||||
|