not to be outdone by hackers and thieves, phishing for PPI, southwest
airlines is sending out their own DKIM signed, SPF PASSED, from their
own servers, their very own phishing email. (didn't one of the major
banks do something like this 3 years ago?)
all servers in the links are http (not
On 10/02/09 13:52, quoth Michael Scheidell:
not to be outdone by hackers and thieves, phishing for PPI, southwest
airlines is sending out their own DKIM signed, SPF PASSED, from their own
servers, their very own phishing email. (didn't one of the major banks do
something like this 3 years
Steven W. Orr wrote:
On 10/02/09 13:52, quoth Michael Scheidell:
not to be outdone by hackers and thieves, phishing for PPI, southwest
airlines is sending out their own DKIM signed, SPF PASSED, from their own
servers, their very own phishing email. (didn't one of the major banks do
On Fri, 2009-10-02 at 13:52 -0400, Michael Scheidell wrote:
not to be outdone by hackers and thieves, phishing for PPI, southwest
airlines is sending out their own DKIM signed, SPF PASSED, from their
own servers, their very own phishing email. (didn't one of the major
banks do something
My employer's travel department just sent out a memo asking for the same
information. No reference to Southwest Airlines in the memo.
Coincidence?
--
Art Greenberg
a...@eclipse.net
On fre 02 okt 2009 21:42:22 CEST, Michael Scheidell wrote
southwest's phone has a 1 hour hold time.
nope, in time waiting do this spamassassin 21 -D -t msg | grep
domain | less
what domains is listed ?, some trd party domains that does not use
known nameserver ?, eg why would a airliner
On Fri, 2009-10-02 at 15:42 -0400, Michael Scheidell wrote:
it REALLY looks like someone at southwest had this done.
its stupid.. it encourages users to disclose private data over an
insecure channel, and whoever authorized this (if its southwest) needs
a LONG vacation.
Should somebody ask
Benny Pedersen wrote:
On fre 02 okt 2009 21:42:22 CEST, Michael Scheidell wrote
southwest's phone has a 1 hour hold time.
nope, in time waiting do this spamassassin 21 -D -t msg | grep
domain | less
what domains is listed ?, some trd party domains that does not use
known nameserver ?, eg
from other that have see this email from other airlines:
(and, sw needs to protect my PPI by using SSL servers, not plain text
servers that belong to a marketing company)
Is the TSA “trying to scare me into providing personal information”?
June 2, 2009
Secure Flight. Just the mention of
On fre 02 okt 2009 22:03:23 CEST, Michael Scheidell wrote
still doesn't answer, dkim signed, spf passes, all domains end in
.southwest.com
then some using a smtp auth or hacked computer inside, or dkim-sign
any mails ?
send to abuse at theredomain dot tld, yes its a grey area where one
like
Benny Pedersen wrote:
On fre 02 okt 2009 22:03:23 CEST, Michael Scheidell wrote
still doesn't answer, dkim signed, spf passes, all domains end in
.southwest.com
then some using a smtp auth or hacked computer inside, or dkim-sign
any mails ?
SUPPRIZE.. its legit folks.
SF phone lines, and
11 matches
Mail list logo