Re: [mailop] How does Sendgrid validate customers (Swisscom Invoice Incident)?

2017-02-16 Thread Luke Martinez via mailop
If you can post some headers, I can likely tell you how this sender got onto our system and how quickly they were shut down. I am certain they didn't tell us "Hey, we are Swisscom." Luke On Thu, Feb 16, 2017 at 1:37 AM, Benoit Panizzon wrote: > Hi all > > I am wondering how such an incident co

[mailop] How does Sendgrid validate customers (Swisscom Invoice Incident)?

2017-02-16 Thread Benoit Panizzon
Hi all I am wondering how such an incident could happen. Yesterday several of our customers (and also several of our support contact email addresses) got very carefully crafted and very authentic looking fake email invoice notifications from Swisscom. The 'online invoice' link points to a file c