jemikwa@lemmy.blahaj.zonetoCybersecurity@sh.itjust.works•Security bug allows anyone to spoof Microsoft employee emailsEnglish
7·
5 months agoThe bug, according to Kokorin, only works when sending the email to Outlook accounts.
Sounds like it’s something client side or specific to Microsoft’s o365/outlook.com servers. Could be the exploit bypasses header verdicts for SPF/dkim/dmarc
Main character