How to Spot Email Spoofing
The number of emails we get daily can be overwhelming. We could be excused for not looking at them all closely – well, almost. Except that not taking care to review emails for signs of spoofing could be a real risk to your business. Learn about email spoofing and how to avoid it in this article.rnrnFirst, what is email spoofing? Don't confuse this with the foreign prince's plea for money. Email spoofing is much more nuanced; it’s still a cyber bad guy at work. They try to get you to download malware, enter personal credentials, or give money. Yet now they are mimicking a reputable company or source of an email. The email will, at a hurried glance, appear to be legitimate, and that’s how it works. The spoofer takes advantage of our lack of attention to accomplish their aim.rnrnWith email spoofing, the scammer tries to trick you into thinking they are a source you recognize. This might be a supervisor, a colleague, a vendor, or some other entity you work with regularly. Their goal is to get you to take an action you would not otherwise do.rnrnThe email will usually look convincing. The would-be attacker will duplicate design elements and mimic the sender's style. So, you need to be aware.rnrn rn
How to Identify Email Spoofing
rnThere are several signs to look for to identify a spoof email. First, you'll want to check the email header information. This is a good place to look for tracking information about the message.rnrnTo view headers:rn- rn
- In Gmail, open the email you want to check headers for. Next to Reply, click the three dots and choose “Show Original”. rn
- In Apple Mail, open the email you want to see headers for, and click View > Message > All Headers. rn
- In Outlook, open the email you want to check, and then click File > Properties. rn
- rn
- if the "from" email address matches the name of the person displayed as the sender; rn
- that the “reply-to” address is the same as the sender or the site that the email purports to be from; rn
- that the “return-path” is the same as the reply-to – you don’t want to think you are replying to “John Doe” when your response will go to “Scammy McScammer". rn