Practical insights on email deliverability, security, and infrastructure — based on real findings from working with 450+ organizations.
Email Security
November 12, 2025
Architectural flaws in SaaS platforms allow phishing campaigns through trusted email infrastructure.
November 11, 2025
Employees lacking phishing awareness risk credential compromise, even from fully authenticated DKIM/SPF emails.
November 6, 2025
Neglected DMARC reporting addresses can leak internal email infrastructure and sensitive organizational information.
October 25, 2025
Scammers exploit lookalike domains to send fake Netflix cancellation emails targeting unsuspecting users.
Email Deliverability
October 17, 2025
Removal limits visibility into ESP/CRM health, making it harder to monitor email deliverability risks.
October 16, 2025
Wildcard EDV misconfigurations let attackers flood inboxes with DMARC reports, disrupting email flow.
October 15, 2025
Including Mailchimp IPs in root SPF unnecessarily exposes domains to spoofing despite strict DMARC policies.
Google Postmaster v1 is ending, reducing visibility into domain/IP reputation for email deliverability.
September 28, 2025
Over 72,000 phishing emails exploited a past client’s domain, bypassing DMARC monitoring protections.
September 26, 2025
Use domain aliases in Google Workspace to simplify email management and avoid multiple organizations.
September 25, 2025
Phishing attacks use legitimate infrastructure and redirects to obfuscate URLs and steal credentials.
September 18, 2025
Registrar-enforced DMARC breaks email delivery and exposes sensitive reporting data to third parties.