How to determine if email is from from gaia.bounces.google.com or just forwarded from there? [duplicate]

Shown below are the "from and to" portions of the message. It looks like it is just forwarded by "gaia.bounces.google.com". The message itself (and I have quite a few of them) indicates I have been awarded something by … Continue reading How to determine if email is from from gaia.bounces.google.com or just forwarded from there? [duplicate]

What does the IMAP banner alone show regarding security (STARTTLS, hashing, information disclosure)?

I encountered an open TCP/143 IMAP port which responded with this banner:
* OK [CAPABILITY IMAP4rev1 SASL-IR LOGIN-REFERRALS ID ENABLE IDLE LITERAL+ STARTTLS AUTH=PLAIN AUTH=LOGIN AUTH=DIGEST-MD5 AUTH=CRAM-MD5] Dovecot ready.

From this I … Continue reading What does the IMAP banner alone show regarding security (STARTTLS, hashing, information disclosure)?

Spoofed email sent to me from my email address with SPF/DKIM/DMARC passing

I received an email earlier today on my work email address. The email came from the same address—mine—but I didn’t send it.
It was an email claiming that he was a professional hacker who had hacked my operating system and planted harmful s… Continue reading Spoofed email sent to me from my email address with SPF/DKIM/DMARC passing

Finding the right approach to security awareness

As artificial intelligence amplifies the sophistication and reach of phishing, vishing, and smishing attacks, understanding and managing human cyber risks has become increasingly vital. Security awareness training is essential and must be a live, evolv… Continue reading Finding the right approach to security awareness

Security leaders have good reasons to fear AI-generated attacks

Generative AI is likely behind the increases in both the volume and sophistication of email attacks that organizations have experienced in the past few months, and it’s still early days, according to Abnormal Security. Their leading worry is the … Continue reading Security leaders have good reasons to fear AI-generated attacks

Bracing for AI-enabled ransomware and cyber extortion attacks

AI has been the shiniest thing in tech since at least November 2022, when ChatGPT was made available to the masses and unveiled the transformative potential of large language models for all the world to see. As businesses scramble to take the lead in o… Continue reading Bracing for AI-enabled ransomware and cyber extortion attacks