TTPwire Vol. 1 · MITRE ATT&CK·Tagged

← All stories

Black Hills InfoSec

Offensive SPF: How to Automate Anti-Phishing Reconnaissance Using Sender Policy Framework

BHIS · 2018-06-28 · Read original ↗

ATT&CK techniques detected

1 predictions
T1071.003Mail Protocols
74%
“of these two mechanics. like to read? syntax : rfc 4408 http : / / www. openspf. org / rfc _ 4408 the exists mechanic will force a ( compliant ) receiving mail server to check if a specific a dns record exists for a specific domain. while that seems interesting and all, what perh…”

Summary

Kent Ickler // TL;DR: This post describes the process of building an active system to automatically recon SPF violations. Disclaimer: There are parts of this build that might not be legal […]

The post Offensive SPF: How to Automate Anti-Phishing Reconnaissance Using Sender Policy Framework appeared first on Black Hills Information Security, Inc..