
12/12/2017 · Dani Grant
What this post added
This post introduces a new technique for combating phishing by dynamically rewriting DMARC DNS records to reject emails originating from malicious domains that abuse Cloudflare's DNS services. It explains the underlying email authentication protocols (SPF, DKIM, DMARC) and how manipulating the DMARC policy can effectively stop phishing attempts at the email client level, adding a DNS-based email security layer to Cloudflare's threat management capabilities.