ClearView IT Blog

ClearView IT has been serving the Phoenix area since 2005, providing IT Support such as technical helpdesk support, computer support, and consulting to small and medium-sized businesses.

Tip of the Week: Know What Email Spoofing is So You Don’t Get Taken

b2ap3_thumbnail_email_spoofing_400.jpgHave you ever been the target of an email spoofer? This can be a difficult question to answer, especially if you don’t know what you’re looking for. Email spoofing can appear to be from legitimate sources, but the most important indicator is if the message looks like spam or fishy in general. If you ever receive a message like this, you might wonder why your spam filter didn’t catch such an obvious trap.

Email spoofing is when a hacker sends you a message that’s disguised as someone else, particularly someone you know or are associated with. This doesn’t necessarily mean that your contact has been hacked (though it could be possible), but it’s still a problem on your end. It’s up to you to identify and delete messages before you inevitably fall for one of these phishing scams. The only way to eliminate the threat of hackers is to take them seriously, and approach scams in an educated and informed manner.

How Email Spoofing Works
Email spoofing is a simple process that sounds like a lot of work, but the reality is that anyone with the proper tools can pull it off. All a spoofer needs is access to what’s called a Simple Mail Transfer Protocol (SMTP) server, and an email software. SMTP servers are fairly simple to find for free, which makes it easy to spoof names. The one on the receiving end will still see the true email address, but it will appear to be from the address or name that the spoofer enters.

Despite how easy it is to attempt an email spoofing campaign, there are still plenty of checks available that make it more challenging to pull off these days. The most notable check is called Sender Policy Framework (SPF), which takes the IP address of the sending server and then compares it to the SPF record of the appropriate domain. If the two don’t match, the receiving server denies the message. The Huffington Post describes how this works using the following example:

Let's say someone tried to spoof Bill Gates (billgates@microsoft.com): They would send an email on his behalf > the recipient server would then talk back to microsoft.com and say "Hey, I have an email that is coming from 123.123.123.123 stating that it was sent from billgates@microsoft.com."; > microsoft.com would then tell the recipient server, "No, sorry, it should be coming from 111.111.111.111." and the message would never get delivered.

What You Can Do Against Spoofing
Email spoofing, while easy to pull off, often can’t make its way through modern email solutions like Gmail and Outlook. Even if it does make it through a spam filter, spoofed messages can still be somewhat tricky to identify at times. In particular, a spoofer who has researched their target, and who they’re posing as (i.e., “phishing”), can represent a significant risk. What you want to do is look at the email address that sent the message. If it’s different from the email address you have on file, you know it’s a spoofer.

Another obvious way to spot a spoofer is if they make absolutely no attempt to disguise themselves, or if they pose as an institution that you regularly attend. If the message holds any suspicious links or attachments, make sure that you don’t click on them. Chances are that you could be walking right into a phishing scam. If the message asks you to confirm your credentials, don’t do as they ask. Organizations like banks or government agencies will never ask you to confirm information through email. Never log into a website using the links provided in an email unless you’re absolutely positive it’s not a spoofer. Instead, try to navigate to the website through your web browser using their normal URL.

One of the best ways to protect your business from email spoofing is to use an enterprise-level spam blocking solution, like the one ClearView IT offers. By utilizing such a powerful security tool, you can prevent most of your spam from even hitting your inbox, which means you don’t have to deal with potentially malicious or wasteful messages. To learn more about how you can fight against spoofing and other types of online threats, give ClearView IT a call at 866-326-7214.

 

Comments

No comments made yet. Be the first to submit a comment
Already Registered? Login Here
Guest
Monday, 05 May 2025
If you'd like to register, please fill in the username, password and name fields.

Captcha Image

Tag Cloud

Tip of the Week Security Technology Best Practices Business Computing Hackers Productivity Software Privacy Network Security Data Cloud Business User Tips IT Support Internet Hardware Innovation Malware Email Hosted Solutions Efficiency Workplace Tips Computer Microsoft Google Collaboration Android Cybersecurity Phishing Business Management IT Services Backup Ransomware Data Backup communications Smartphone Upgrade Small Business Smartphones Microsoft Office Mobile Devices Network Data Recovery Communication Managed IT Services Quick Tips Productivity Social Media VoIP Users Mobile Device Tech Term Automation Windows 10 Business Continuity Facebook Disaster Recovery Covid-19 Passwords Holiday Browser Apps Managed Service Windows 10 IT Support Cloud Computing Outsourced IT Miscellaneous Managed Service Provider Internet of Things Data Management Remote Work Saving Money Operating System Government Artificial Intelligence Managed IT services Gadgets Networking Windows Workplace Strategy Blockchain WiFi Server Bandwidth Information Encryption Remote App Mobile Device Management Virtualization Business Technology Spam Information Technology Budget History Gmail Office Employee/Employer Relationship Two-factor Authentication Office 365 Apple Conferencing Access Control Cybercrime Data Security Wi-Fi Health Big Data BDR Analytics Training Voice over Internet Protocol Hacker Document Management Save Money Compliance Patch Management Vendor Employer-Employee Relationship Remote Monitoring Help Desk Hacking Remote Computing Cost Management IT Management Data loss Money Mobile Office Legal Customer Service Unified Threat Management Managed Services Firewall Data storage Augmented Reality Word Search... IBM Applications Best Practice Website Retail Project Management BYOD Vulnerabilities Alert Computing Hiring/Firing Vendor Management Hard Drive Outlook Password Scam Chrome Law Enforcement Remote Workers End of Support Printer Windows 7 VPN Social Sports Free Resource DDoS SaaS Mobile Computing Update How To Marketing iPhone Travel Cortana Virtual Reality Data Breach Running Cable Education Social Engineering Cryptocurrency Paperless Office Content Filtering Antivirus Black Market Storage Cleaning Maintenance Router Robot Monitoring The Internet of Things YouTube Healthcare Websites User Meetings Mobility Windows 11 Laptop Twitter Google Maps Downtime Safety How To Microchip Excel Flexibility Virtual Desktop Managed Services Provider PowerPoint Experience Virtual Private Network Administration Tech Terms Identity Theft Hack Presentation Notifications Managed IT Unified Communications Virtual Assistant Specifications Current Events Digital IT Consultant Disaster Solutions Google Docs Taxes Bluetooth Customer Relationship Management Distributed Denial of Service Integration Co-Managed IT Office Tips Images 101 Lithium-ion battery Entertainment Display Private Cloud Processor Memory Physical Security Processors Employees Avoiding Downtime Politics Machine Learning Settings Multi-factor Authentication Holidays Start Menu Computer Care Solid State Drive Downloads HIPAA Cooperation Video Conferencing Vulnerability Saving Time Virtual Machines Wireless Technology Chromebook Software as a Service Drones Bitcoin Computer Repair Data Protection Computers eWaste Automobile Professional Services Telephone Environment Advertising Motion Sickness Business Communications Internet Service Provider Azure Relocation Browsers Heating/Cooling Displays Nanotechnology Work/Life Balance Google Drive Upload Social Networking Tech Support Software License Regulations Compliance Windows XP Managed IT Service Comparison Google Play Memes Workplace Social Network Human Resources Net Neutrality Inbound Marketing Knowledge Data Analysis Corporate Profile Screen Reader Telephony Trends Employer Employee Relationship Mobile Technology Financial Data In Internet of Things Television Security Cameras IT Scams Hacks Customer Resource management Network Congestion Cabling Devices Risk Management G Suite Tip of the week Google Apps Reliable Computing Fileless Malware Writing Tablet VoIP Gamification Tracking Company Culture Telework Electronic Payment Mouse Communitications Staffing Microsoft 365 Cables Telephone System Regulations Smartwatch Web Server Procurement Scalability Directions IP Address Backup and Disaster Recovery Phone System Text Messaging Content Proactive IT Digital Payment Desktop FinTech Administrator SharePoint IT Assessment Point of Sale Bring Your Own Device Electronic Medical Records Worker Accountants CES Supply Chain Management Value Access Database Shortcuts Time Management Music Public Cloud Organization Cyber security Smart Devices Recovery Health IT Competition Equifax Hard Drive Disposal Remote Working Audit Computer Accessories Spyware Tactics Be Proactive Username Entrepreneur File Sharing AI LiFi Trend Micro Botnet Electronic Health Records Documents Transportation Rental Service Redundancy Application Micrsooft Startup Freedom of Information Digital Security Cameras Business Intelligence email scam Wasting Time Navigation Flash Cache Addiction Modem Workplace Strategies Telephone Systems Unified Threat Management Business Growth Workers Mobile Security eCommerce Surveillance Securty User Tip Legislation News Videos CCTV Managing Costs Printing Evernote Domains Network Management SSID Banking Touchscreen Google Wallet Development Troubleshooting Employer/Employee Relationships Messenger Emergency Proxy Server Deep Learning Emails Computer Malfunction Fake News Media Vendor Mangement Service Level Agreement Computing Infrastructure Virtual Machine Smart Technology Business Metrics Management Hosted Solution Samsung Device security Reviews Optimization Webcam Microsoft Excel 2FA Teamwork Books Public Speaking Uninterrupted Power Supply Wireless Headphones Language Business Mangement Going Green Society Business Cards Data Storage Streaming Media Hypervisor Tech Medical IT Error Keyboard Tablets Shopping Visible Light Communication Paperless Business Owner SQL Server Reading Bookmark Hard Drives Monitors Download intranet Windows 8 Supercomputer Piracy PCI DSS Licensing Google Calendar Term Humor Wireless Supply Chain Virus Shortcut HTML Gig Economy

Blog Archive

Recent Comments

No comments yet.

Interested In A Free Consultation?