spf-discuss
[Top] [All Lists]

No use of checking RFC2822 headers

2004-09-28 00:55:00
I wrote:

To see how useless this is, copy following message into the file test.eml
and open it with Microsoft's Outlook Express

------snip-------
From: "support(_at_)bankofamerica(_dot_)com" <phish(_at_)phisher(_dot_)com>
To: you(_at_)example(_dot_)com
Subject: Account verification
MIME-Version: 1.0
Content-Type: text/html

<html><body>
Click here:
<a href="http://www.phisher.com";>https://www.bankofamerica.com</a>
</body></html>
------snip-------

For those who don't have Outlook, this is what Outlook Express displays:

From:    support(_at_)bankofamerica(_dot_)com
Date:    Tuesday, September 28, 2004 9:53 AM
To:      you(_at_)example(_dot_)com
Subject: Account verification

Click here: https://www.bankofamerica.com