Security Practitioner’s Guide to Email Spoofing and Risk Reduction
An article from Digital Shadows explains email spoofing in detail and provides a practical guide for how an organization can fight this tactic and reduce the risk of successful phishing attempts. The article discusses the traditional approach of bolting on security plugins to the Simple Mail Transfer Protocol (SMTP), while advocating for more advanced measures like implementing the Sender Policy Framework (SPF), Domain Message Authentication Reporting and Conformance (DMARC), and DomainKeys Identified Mail (DKIM).