OPNsense Forum

English Forums => General Discussion => Topic started by: fabian on December 05, 2017, 08:23:59 pm

Title: Mailsploit
Post by: fabian on December 05, 2017, 08:23:59 pm
This page has some content for an attack against mail clients which hides the correct sender of the email:
https://www.mailsploit.com/index

I tried the example and it passed postfix / rspamd. Rspamd seems to detect that something is wrong (increase of score by 1.5 because of the encoding in the sender), but that is enough to block the mails. It would probably help in short term to increase this value but it could block legit mails.

If anyone is testing the mail gateway plugins, the mails will be probably not detected.