Re: [Mailman-Developers] Two more DMARC mitigations
Jim Popovitch writes:
Unless I am mistaking things, the sheer irony here is that Yahoo's bastardized version of DMARC, which is necessary to stave off collateral damage from their past security breach(es?), needs to be further augmented with even less user security in order to be secure.
I don't see why the OAuth version of John's proposal would be less secure.
If you want real irony, look no farther than Yahoo! Groups' From: header field. Yahoo! is using DMARC to get "yahoo.com" out of the From: field in list traffic, and Groups is putting it right back in.
On Jun 13, 2014, at 01:46 PM, Stephen J. Turnbull wrote:
If you want real irony, look no farther than Yahoo! Groups' From: header field. Yahoo! is using DMARC to get "yahoo.com" out of the From: field in list traffic, and Groups is putting it right back in.
I'm on a few Yahoo! Groups and the From munging that they're doing is really just horrible.
-Barry
participants (2)
-
Barry Warsaw
-
Stephen J. Turnbull