What is a CEO fraud attack and how can it be prevented?

CEO Fraud: An Acquisitive Email Scam CEO fraud attacks are dangerous versions of phishing attacks that often use the authority of a company’s CEO to achieve it’s – malicious – goal. By impersonating a CEO, the attacker directs a fake email to an employee (usually from the finance department), typically demanding the employee to make …

How to find a DKIM selector?

In order to perform a DKIM record check, the DKIM selector is needed. In this article we will cover two methods to find out what DKIM selector is used for a specific source.  Who provides the DKIM selector? The DKIM selector that needs to be used, depends on the source where DKIM has to be …

How to analyse DMARC reports – Per result overview

DMARC Analyzer provides several overviews to analyse DMARC Aggregate (RUA) reports\. One of these overviews is the Per result overview. This article explains how you analyse the Aggregate DMARC reports within the Per result overview.

How to get email forwarders DMARC compliant?

Email forwarding within DMARC is a bit of an edgecase. What are forwarders? There are two types of forwarding, manual forwarding and automatic forwarding. Manual forwarding does not give any authentication issues, automatic forwarding does. Can forwarders be influenced? It is not possible to stop sources from forwarding emails. Once an email is sent, it …

Multiple SPF records/entries the complete guide

A domain name can’t have multiple SPF records. If you would like to add more sources (for more applications) you’ll need to update the existing record or (if the record does not exist yet) create a new record with multiple entries. How to create an SPF record with multiple sources You can add multiple sources …

What is a DKIM selector?

When trying to verify a DKIM record check – it will automatically ask for the DKIM selector. In this article we’ll explain what is a DKIM selector. read more about DKIM signatures   learn how to validate a DKIM record   validate your DKIM record using the DKIM Record Checker

Top 10 frequently asked questions

As one of the pioneers of DMARC, DMARC Analyzer has been active in the DMARC landscape since the creation of the DMARC (RFC) standard. During these years we experienced that some questions about DMARC got asked a lot. Based on this we have written several articles, in this article we refer to articles which get …

Email authentication results explained

The DMARC Analyzer Suite provides many email authentication results. The authentication results occur in multiple overviews within the DMARC Analyzer Suite, so it’s valuable to fully understand these results. This article we will describe how DMARC Analyzer divides all collected authentication results into 8 different columns: Domain, Reason, Compliant?, Forwarded?, Volume, Applied Policy, DKIM Verification …

DKIM, SPF and DMARC – brief explanation on why implementing them provides the best email protection

Before addressing how DMARC is set up for a domain, it’s important to have a clear understanding why DMARC is vital for email security and how it’s connected to SPF and DKIM. Most organizations have some sort of inbound security enabled for their company. These tools protect incoming emails and filter messages containing spam and/or …

Why are DMARC compatible sources sending out email on my behalf?

Organizations often see DMARC compatible sources sending out a small amount of email on their behalf, while they do not use this source. In this article we will explain what is going on in these specific situations and what can be done to resolve this. What are DMARC compatible sources? When logged in to the …

Is it possible to receive raw data?

DMARC Analyzer tool receives raw data that gets translated into the Aggregated and Forensic reports. We usually advise against receiving individual reports as you may receive lots of messages with unreadable raw data, at least daily. If you do want to receive the data, there is a way: Simply add an extra RUA or RUF …

Forensic reports from LinkedIn

During DMARC deployment projects, organizations often get forensic reports from LinkedIn. In this article we will explain why LinkedIn sends forensic reports and what this indicates. What are Forensic reports? If an organization places a DMARC record with a RUF tag, it will start receiving Forensic reports. Forensic reports are really valuable, because forensic reports …

How to validate your SPF record

validate your SPF record using the SPF Record Checker   learn how to create an SPF record   If an SPF record is found, you will see a screen similar to the screenshot below: Please make sure the SPF record doesn’t exceed the maximum of 10 lookups!   The SPF records are correctly configured when: …