Live data from Hacker News

SendGrid isn’t emailing about ICE or BLM – it’s a phishing attack

fredbenenson.com

31–40 of 152 posts

Re: SendGrid isn’t emailing about ICE or BLM – it’s a phishing attack

#31

Earlier quoted context omitted.

Blocking scammers is not censorship.

> I’m not reading it, but ... [strong opinion unrelated to the actual content of the article they chose not to read] This statement is so strongly emblematic of today's political discourse.

Confusingly, they claim to have read the comment they replied to, and still managed to screw it up. Which I guess is also emblematic of today's discourse. Reading is not enough, there has to be comprehension.

Re: SendGrid isn’t emailing about ICE or BLM – it’s a phishing attack

#33
Is this a new trend in phishing emails? They appear to be using legitimate domains to bypass spam detection. Usually the domains are associated with legitimate companies who are completely oblivious. I always wondered how this works. Is it a broken contact form somewhere?

Re: SendGrid isn’t emailing about ICE or BLM – it’s a phishing attack

#34
post #3

Before anyone launches themselves into the sky: the title is clickbait. This is about phishing attempts that use ICE to persuade you to click. Sendgrid the company is not emailing about supporting ICE. But technically Sendgrid the infrastructure is.

Maybe one day our knee jerk reactionary outrage will be quelled not by any enlightenment but because we are forced to grow weary of falling prey to phishing attacks. I'd feel pretty stupid getting worked up about something only to realize that getting worked up about it was used against me. I'm writing this because for a moment I did get worked up and then had the slow realization it was a phishing attack, slightly b…

I agree. It can demonstrate the knee-jerk affect in real time for the reader. Someone who reacts strongly to the title of this thread would have experienced a similar reaction if they had received the SendGrid phish email. Never seen clickbait wording actually be appropriate before.

Re: SendGrid isn’t emailing about ICE or BLM – it’s a phishing attack

#36
post #22

" The fundamental issue is that SendGrid’s business model depends on making it easy for legitimate businesses to send email at scale. " I disagree with this conclusion, if not only because other email service providers don't have this issue. It wouldn't surprise me if something was broken with SendGrid's internal infrastructure. I used to be a SendGrid customer until my deliverability started being affected by this i…

If the attackers in this case are cleverly exploiting anything, I would bet on aggressive grey patterns like that more than I would US culture wars. Noticing that a company has policies that let you hide in plain sight means that you're paying close attention. Knowing what issues are hot button culture flamewars means you can access literally any American news outlet.

Re: SendGrid isn’t emailing about ICE or BLM – it’s a phishing attack

#37
post #3

Before anyone launches themselves into the sky: the title is clickbait. This is about phishing attempts that use ICE to persuade you to click. Sendgrid the company is not emailing about supporting ICE. But technically Sendgrid the infrastructure is.

I think HN should embrace AI to the point of having an alternative AI-generated title next to the original title, to reduce clickbait and reduce the global rage index.

This is an interesting idea, I think clickbait titles are one of many problems with our engagement-based social media tools today. For the sake of experimentation and transparency, here's the suggested titles from ChatGPT 4. They seem to be more descriptive and accurate overall.

---

Possible alternative titles that better match the article’s content:

How Phishers Are Using SendGrid to Target SendGrid Users with Political Bait

– Accurately reflects the mechanism (SendGrid abuse), the audience, and the novel political/social-engineering angle.

SendGrid Account Takeovers Are Fueling a Sophisticated Phishing Ecosystem

– More technical / HN-native framing, avoids culture-war implications.

Phishception: Politically Targeted Phishing Sent Through Compromised SendGrid Accounts

– Highlights the core insight and the self-reinforcing nature of the attack.

Re: SendGrid isn’t emailing about ICE or BLM – it’s a phishing attack

#38
We've been getting similar phishing emails claiming to be from SendGrid, except they're along the lines of "we're adding a rainbow banner to the footer of all emails to show LGBT support, click here to opt out".

It's especially funny because SendGrid isn't even one of our vendors.

Post reply on HN