Live data from Hacker News

SendGrid isn’t emailing about ICE or BLM – it’s a phishing attack

fredbenenson.com

81–90 of 152 posts

Re: SendGrid isn’t emailing about ICE or BLM – it’s a phishing attack

#81

I can't think of one email I received from sendgrid I would consider legitimate. Anytime I receive an email distributed by sendgrid I have found it actually had no value to me. Sometimes it's from a business I have dealt with but I never wanted or was interested in the content.

Same impression. SendGrid, MailChimp, any of those are just enabling spam at the end of the day.

Don't leave Salesforce out.

Re: SendGrid isn’t emailing about ICE or BLM – it’s a phishing attack

#82

Earlier quoted context omitted.

This is just for primaries, you register to vote with the state as well.

Still absurd that "free" "democratic" elections are allowed to require party membership, even for the primary.

How do you envision this working without the "opposing party" poisoning the vote to get a weaker opponent?

Re: SendGrid isn’t emailing about ICE or BLM – it’s a phishing attack

#83
post #71
post #62

Earlier quoted context omitted.

Use @ as your email address when signing up, and check the To header when receiving emails. And/or, long-press or right-click on any link to inspect the linked domain.

What fraction of people do you suppose actually have a to do this with? Even some highly technically inclined people (like myself) can be entirely ignorant of the process. It's not as if consumer ISPs provide the service.

Sub-addressing (doing tag+handle@domain.com) is supported by many email services but + may be flagged as an illegal character.

Re: SendGrid isn’t emailing about ICE or BLM – it’s a phishing attack

#84
post #33

Is this a new trend in phishing emails? They appear to be using legitimate domains to bypass spam detection. Usually the domains are associated with legitimate companies who are completely oblivious. I always wondered how this works. Is it a broken contact form somewhere?

the article talked about how the sendgrid accounts are real, and presume compromised.

I suspect that once the sendgrid account is compromised, they then send out these phishing emails, hoping to compromise _other_ sendgrid accounts to look for password overlap and/or keep the flow going.

Re: SendGrid isn’t emailing about ICE or BLM – it’s a phishing attack

#85
post #62

> Can this be fixed? For popular senders: sort-of: in your incoming mail server, substring-match the display name of the sender against popular brands, and ensure the actual domain matches. This works remarkably well for proper brands (FedEx et al), but breaks down when the brand name regularly occurs in "normal" names, the sending brand sends mail from all over the place, or "innocuous" impersonation takes place all…

Use @ as your email address when signing up, and check the To header when receiving emails. And/or, long-press or right-click on any link to inspect the linked domain.

If you don't control your own domain fully, almost all email services let you do:

user+servicetag@domain.com

And have it go to user@domain.com with the servicetag still in the To: field. At least, I have never encountered a problem with this.

Re: SendGrid isn’t emailing about ICE or BLM – it’s a phishing attack

#86
post #82

Earlier quoted context omitted.

Still absurd that "free" "democratic" elections are allowed to require party membership, even for the primary.

How do you envision this working without the "opposing party" poisoning the vote to get a weaker opponent?

I envision that it does not matter, because this is a tactic that would 1) be available to all, and 2) it gives up your vote for someone of your own party, thereby weakening your own position. It's self regulating.

Re: SendGrid isn’t emailing about ICE or BLM – it’s a phishing attack

#87
post #82

Earlier quoted context omitted.

Still absurd that "free" "democratic" elections are allowed to require party membership, even for the primary.

How do you envision this working without the "opposing party" poisoning the vote to get a weaker opponent?

Can't they do that now? If I think my chosen primary guy is winning in a landslide I could just register for another party I don't like and vote for someone who I think is easier to beat.

Re: SendGrid isn’t emailing about ICE or BLM – it’s a phishing attack

#88
post #82

Earlier quoted context omitted.

Still absurd that "free" "democratic" elections are allowed to require party membership, even for the primary.

How do you envision this working without the "opposing party" poisoning the vote to get a weaker opponent?

[deleted]

Re: SendGrid isn’t emailing about ICE or BLM – it’s a phishing attack

#89
post #62

Earlier quoted context omitted.

Use @ as your email address when signing up, and check the To header when receiving emails. And/or, long-press or right-click on any link to inspect the linked domain.

If you don't control your own domain fully, almost all email services let you do: user+servicetag@domain.com And have it go to user@domain.com with the servicetag still in the To: field. At least, I have never encountered a problem with this.

And then the spammers (or other illegitimate source) just add this to their processing…

^([^@+]+)\+[^@]*(@.*)$

Re: SendGrid isn’t emailing about ICE or BLM – it’s a phishing attack

#90

I can't think of one email I received from sendgrid I would consider legitimate. Anytime I receive an email distributed by sendgrid I have found it actually had no value to me. Sometimes it's from a business I have dealt with but I never wanted or was interested in the content.

Do you specifically go out of your way to check who sent every transactional email you receive and take notes on which email sending service your order confirmation was sent by? That would be a very weird thing to do and would be the only way to know that.
Post reply on HN