1 hour ago · Tech · hide · 0 comments

As reported by Ars Technica, security researcher Cory Solovewicz owns the domains noreply.net and noreply.us. Every day, he sees nearly 700 inbound email attempts to addresses on those domains. That is a massive amount of misdirected mail, and it's leaking personally identifiable information (PII) like a sieve.If you are sending mail using noreply.net (or any other domain you don't own), you are ensuring that bounces, spam rejections, out-of-office auto-replies, and real messages from actual humans are going to a complete stranger.Never send email using a domain you do not own or have explicit permission to use. Doing so fails modern email authentication (SPF, DKIM, DMARC) checks, fails to comply with mailbox provider sender requirements, and guarantees your operational email traffic, and sensitive customer responses end up in unexpected places.It's happening in my inbox, tooThis issue isn't limited to noreply.net. A huge chunk of this misdirected volume comes from people typing fake…

No comments yet. Log in to reply on the Fediverse. Comments will appear here.