Endpoint //

Authentication

4/4/2018
03:05 PM
0%
100%

Report: White House Email Domains Poorly Protected from Fraud

Only one Executive Office of the President email domain has fully implemented DMARC, according to a new report.

If you want to stop email-based phishing, the Domain Message Authentication Reporting & Conformance (DMARC) protocol is a recognized tool for the job. According to DMARC.org it's a tool being used by nearly 200,000 organizations to secure their email. But according to a report from the Global Cyber Alliance, it's a tool that's not being used very effectively by the White House.

The Alliance surveyed the domains under the control of the Executive Office of the President (EOP) and found that only one - Max.gov - has implemented the protocol at the highest level, which protects most completely against delivery of spoofed email. Seven other domains, including whitehouse.gov and eop.gov have implemented the protocol at the lowest level, which includes only monitoring.

The other 18 domains under the office's control have not implemented any level of DMARC at all. This could be important for those in government and the general public because these government domains are frequent choices for spoofed addresses in phishing campaigns.

Last year, the US Department of Homeland Security mandated that all federal agencies implement DMARC. The Global Cyber Alliance report indicates that not all agencies have embraced the mandate. The private sector has not fully embraced DMARC, either: A recent survey by Agari Data shows that only 8% of businesses have implemented the protocol.

For more, read here, here, and here

Interop ITX 2018

Join Dark Reading LIVE for an intensive Security Pro Summit at Interop IT X and learn from the industry’s most knowledgeable IT security experts. Check out the agenda here.Register with Promo Code DR200 and save $200.

Dark Reading's Quick Hits delivers a brief synopsis and summary of the significance of breaking news events. For more information from the original source of the news item, please follow the link provided in this article. View Full Bio

Comment  | 
Print  | 
More Insights
Comments
Newest First  |  Oldest First  |  Threaded View
JohnyTaylor
0%
100%
JohnyTaylor,
User Rank: Apprentice
4/6/2018 | 7:50:12 AM
Solution
This fraud occurs when we use unsecured Router for wifi that's why we should use Dlink router which secures all data and provide wifi ultimate performance, smarter bandwidth and Remote access management, and its also provide D link customer support to their use for any problem in their router.
li'l ciso
50%
50%
li'l ciso,
User Rank: Strategist
4/4/2018 | 5:04:41 PM
le fake news
That's not how DMARC works
Election Websites, Back-End Systems Most at Risk of Cyberattack in Midterms
Kelly Jackson Higgins, Executive Editor at Dark Reading,  8/14/2018
Intel Reveals New Spectre-Like Vulnerability
Curtis Franklin Jr., Senior Editor at Dark Reading,  8/15/2018
Data Privacy Careers Are Helping to Close the IT Gender Gap
Dana Simberkoff, Chief Compliance and Risk Management Officer, AvePoint, Inc,  8/20/2018
Register for Dark Reading Newsletters
White Papers
Video
Cartoon
Current Issue
Flash Poll
New Best Practices for Secure App Development
New Best Practices for Secure App Development
The transition from DevOps to SecDevOps is combining with the move toward cloud computing to create new challenges - and new opportunities - for the information security team. Download this report, to learn about the new best practices for secure application development.
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2018-1394
PUBLISHED: 2018-08-20
Multiple IBM Rational products are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 138425.
CVE-2018-1517
PUBLISHED: 2018-08-20
A flaw in the java.math component in IBM SDK, Java Technology Edition 6.0, 7.0, and 8.0 may allow an attacker to inflict a denial-of-service attack with specially crafted String data. IBM X-Force ID: 141681.
CVE-2018-1656
PUBLISHED: 2018-08-20
The IBM Java Runtime Environment's Diagnostic Tooling Framework for Java (DTFJ) (IBM SDK, Java Technology Edition 6.0 , 7.0, and 8.0) does not protect against path traversal attacks when extracting compressed dump files. IBM X-Force ID: 144882.
CVE-2015-5160
PUBLISHED: 2018-08-20
libvirt before 2.2 includes Ceph credentials on the qemu command line when using RADOS Block Device (aka RBD), which allows local users to obtain sensitive information via a process listing.
CVE-2015-5243
PUBLISHED: 2018-08-20
phpWhois allows remote attackers to execute arbitrary code via a crafted whois record.