email - smtp, hidden 'rcpt to' value -



email - smtp, hidden 'rcpt to' value -

received email spammer addressed non-existent user in domain, let's phone call example.com. headers had been spoofed must assume 'rcpt to' field legit reach me. have messages forwarded gmail domain's sendmail.

trouble nil in message source in gmail showing of legit email addresses spammer specified reach me. see in message source bogus email. can't reproduce either. first 'received from' part:

> received: sqszjwgpy ([1.52.114.198]) > example.com (8.14.4/8.14.4) esmtp id s5peiuci003583; > wed, 25 jun 2014 10:18:31 -0400

in other emails lastly line looks this:

for me@example.com; wed, 25 jun 2014 10:32:11 -0400

so legit email revealed. know envelope not included in message source there must way find out 'rcpt to' value without going sendmail logging , not. how did spammer hide email specified?

the spammer has smtp server has email business relationship configured administrator, can send emails different senders. smtp server doesn't have filters command output , input emails, if administrator of server, can send emails sender "example@yahoo.com" if domain name isn't yahoo.com. once, partners , did test in company (customer) demonstrate smtp server can victim phishing attack, send emails different senders different domain name.

i hope info help you.

good luck.

email smtp

Comments

Popular posts from this blog

php - Android app custom user registration and login with cookie using facebook sdk -

django - Access session in user model .save() -

php - .htaccess Multiple Rewrite Rules / Prioritizing -