Taggart :donor: on Nostr: My first thought with this approach is that it's a phisher's dream come true. Take a ...
Published at
2025-04-01 18:10:58Event JSON
{
"id": "59c911b93021a0c33f274261d0c91e2239a8a625e612d5a0d9124ab1b79200e5",
"pubkey": "3ba412ac4b14c4b37cd6ed16b9d262ad4ffefb05c5b6c6b3e15e381471b1221a",
"created_at": 1743531058,
"kind": 1,
"tags": [
[
"imeta",
"url https://media.infosec.exchange/infosec.exchange/media_attachments/files/114/264/051/465/387/143/original/815027a581d494db.png",
"m image/png",
"dim 638x363",
"blurhash U4Sr}:4:_2~os*W9IVIV%Jt3D%9GNN9GIn?F"
],
[
"proxy",
"https://infosec.exchange/users/mttaggart/statuses/114264051475105527",
"activitypub"
]
],
"content": "My first thought with this approach is that it's a phisher's dream come true.\n\nTake a look at how non-GMail users will receive encrypted mail. These sorts of messages, especially with an expected auth flow, will be spoofed instantly.\n\nhttps://workspace.google.com/blog/identity-and-security/gmail-easy-end-to-end-encryption-all-businesses\n\nhttps://media.infosec.exchange/infosec.exchange/media_attachments/files/114/264/051/465/387/143/original/815027a581d494db.png",
"sig": "d349d973b1b6dc65183e2aaf92e4aaa370a41b330e387d056469e5d46860b0de208462922183280c083eb3e9b9963b7aec3d23b9dcbcc05c6005ae7a07c5250e"
}