Re: [dmarc-ietf] Phishing attacks on the Display From

2014-12-12 Thread Douglas Otis
On Dec 12, 2014, at 5:02 PM, Terry Zink wrote: > Thanks for everyone's thoughts. It sounds like doing something with the > Display and training users on it is the consensus. Dear Terry, This effort should include considerations for Sender header fields in addition to From header fields which

Re: [dmarc-ietf] Phishing attacks on the Display From

2014-12-12 Thread Terry Zink
Thanks for everyone's thoughts. It sounds like doing something with the Display and training users on it is the consensus. -- Terry -Original Message- From: dmarc [mailto:dmarc-boun...@ietf.org] On Behalf Of John Levine Sent: Friday, December 12, 2014 10:15 AM To: dmarc@ietf.org Cc: st..

Re: [dmarc-ietf] Phishing attacks on the Display From

2014-12-12 Thread John Levine
>>> 1. Hotmail/outlook.com puts a green shield in the web UX in front of >>> trusted senders >who authenticate. Is that what you mean? >> >> Only sort of. That's ad-hoc since each recipient system has their private >> list of >green-bar-worthy senders. (I mean, if I wanted to get into it, how

[dmarc-ietf] ***SPAM*** 21.049 (5) Re: Phishing attacks on the Display From

2014-12-12 Thread A. Schulze
Terry Zink: How do we combat Display From (Friendly From) attacks? For example: From: Woodgrove Bank I think, most MUA tend to display only the half information to the user. The problem wouldn't be as large if MUA would not hide so much technical details. And users wouldn't be trained to