Prevention

How not to get phished ✋🐟

1. Overview

There are some protections in place to do this. In addition, company usually has procedure to deal with this. That said, prevention is still hard and requires afforts (a lots)

2. Description

2.1 Protections

Short Summary - SPF, DKIM, and DMARC are the three pillars of email authentication designed to combat spoofing and phishing. SPF verifies that the sending server’s IP address is authorized by the domain owner. DKIM uses a cryptographic signature to verify that the message content has not been altered in transit. Finally, DMARC ties SPF and DKIM together to enforce a policy—telling the receiving server whether to accept, quarantine, or reject emails that fail both checks, thereby protecting a brand’s reputation and its users from phishing.

2.2 How is it done in Organization?

This section is from TryHackMe.Shout out to them putting everything together!

2.3 Technical Defenses

To Users

last modified: 2025-12-12