On Thu, 18 Feb 2021, at 21:41, Tom Brennan wrote:
> On 2/18/2021 12:15 PM, Jeremy Nicoll wrote:

> > How would someone spoof that, unless they had access to my
> > mail hosting company's servers?
> 
> ... or coded their own SMTP relay program...

Ok, yes, also if they install and customise (in)appropriately their
own SMTP server...


> But maybe Seymour is talking about the MAIL FROM: envelope item, which 
> can easily be spoofed.

It depends surely on the mail host?  If I've done an authenticated login to
a reputable mail provider, surely they'll make sure that what they send 
out will accurately reflect who I am, not who my email client claims?

I expect all bets are off if one deliberately uses a disreputable mail 
host. 

-- 
Jeremy Nicoll - my opinions are my own.

----------------------------------------------------------------------
For IBM-MAIN subscribe / signoff / archive access instructions,
send email to [email protected] with the message: INFO IBM-MAIN

Reply via email to