Endpoint //

Authentication

4/4/2018
03:05 PM
0%
100%

Report: White House Email Domains Poorly Protected from Fraud

Only one Executive Office of the President email domain has fully implemented DMARC, according to a new report.

If you want to stop email-based phishing, the Domain Message Authentication Reporting & Conformance (DMARC) protocol is a recognized tool for the job. According to DMARC.org it's a tool being used by nearly 200,000 organizations to secure their email. But according to a report from the Global Cyber Alliance, it's a tool that's not being used very effectively by the White House.

The Alliance surveyed the domains under the control of the Executive Office of the President (EOP) and found that only one - Max.gov - has implemented the protocol at the highest level, which protects most completely against delivery of spoofed email. Seven other domains, including whitehouse.gov and eop.gov have implemented the protocol at the lowest level, which includes only monitoring.

The other 18 domains under the office's control have not implemented any level of DMARC at all. This could be important for those in government and the general public because these government domains are frequent choices for spoofed addresses in phishing campaigns.

Last year, the US Department of Homeland Security mandated that all federal agencies implement DMARC. The Global Cyber Alliance report indicates that not all agencies have embraced the mandate. The private sector has not fully embraced DMARC, either: A recent survey by Agari Data shows that only 8% of businesses have implemented the protocol.

For more, read here, here, and here

Interop ITX 2018

Join Dark Reading LIVE for an intensive Security Pro Summit at Interop IT X and learn from the industry’s most knowledgeable IT security experts. Check out the agenda here.Register with Promo Code DR200 and save $200.

Dark Reading's Quick Hits delivers a brief synopsis and summary of the significance of breaking news events. For more information from the original source of the news item, please follow the link provided in this article. View Full Bio

Comment  | 
Print  | 
More Insights
Comments
Newest First  |  Oldest First  |  Threaded View
JohnyTaylor
0%
100%
JohnyTaylor,
User Rank: Apprentice
4/6/2018 | 7:50:12 AM
Solution
This fraud occurs when we use unsecured Router for wifi that's why we should use Dlink router which secures all data and provide wifi ultimate performance, smarter bandwidth and Remote access management, and its also provide D link customer support to their use for any problem in their router.
li'l ciso
50%
50%
li'l ciso,
User Rank: Strategist
4/4/2018 | 5:04:41 PM
le fake news
That's not how DMARC works
Valentine's Emails Laced with Gandcrab Ransomware
Kelly Sheridan, Staff Editor, Dark Reading,  2/14/2019
High Stress Levels Impacting CISOs Physically, Mentally
Jai Vijayan, Freelance writer,  2/14/2019
Register for Dark Reading Newsletters
White Papers
Video
Cartoon
Current Issue
5 Emerging Cyber Threats to Watch for in 2019
Online attackers are constantly developing new, innovative ways to break into the enterprise. This Dark Reading Tech Digest gives an in-depth look at five emerging attack trends and exploits your security team should look out for, along with helpful recommendations on how you can prevent your organization from falling victim.
Flash Poll
New Best Practices for Secure App Development
New Best Practices for Secure App Development
The transition from DevOps to SecDevOps is combining with the move toward cloud computing to create new challenges - and new opportunities - for the information security team. Download this report, to learn about the new best practices for secure application development.
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2019-7399
PUBLISHED: 2019-02-17
Amazon Fire OS before 5.3.6.4 allows a man-in-the-middle attack against HTTP requests for "Terms of Use" and Privacy pages.
CVE-2019-8392
PUBLISHED: 2019-02-17
An issue was discovered on D-Link DIR-823G devices with firmware 1.02B03. There is incorrect access control allowing remote attackers to enable Guest Wi-Fi via the SetWLanRadioSettings HNAP API to the web service provided by /bin/goahead.
CVE-2019-8394
PUBLISHED: 2019-02-17
Zoho ManageEngine ServiceDesk Plus (SDP) before 10.0 build 10012 allows remote attackers to upload arbitrary files via login page customization.
CVE-2019-8395
PUBLISHED: 2019-02-17
An Insecure Direct Object Reference (IDOR) vulnerability exists in Zoho ManageEngine ServiceDesk Plus (SDP) before 10.0 build 10007 via an attachment to a request.
CVE-2019-8389
PUBLISHED: 2019-02-17
A file-read vulnerability was identified in the Wi-Fi transfer feature of Musicloud 1.6. By default, the application runs a transfer service on port 8080, accessible by everyone on the same Wi-Fi network. An attacker can send the POST parameters downfiles and cur-folder (with a crafted ../ payload) ...