The Reply-To Was One Letter Off: How a Typosquat Domain Turned a Gmail BEC Into a Payment Diversion
A phishing email impersonating a credit manager at a major steel distributor arrived from a Gmail account with full SPF, DKIM, and DMARC authentication. The attacker set the Reply-To to a typosquat domain...
Read more