{"id":618,"date":"2012-10-30T23:31:28","date_gmt":"2012-10-30T23:31:28","guid":{"rendered":"http:\/\/paulgurney.com\/whats_new_blog\/?p=618"},"modified":"2012-10-30T23:32:14","modified_gmt":"2012-10-30T23:32:14","slug":"the-problem-with-domainkeys-identified-mail","status":"publish","type":"post","link":"https:\/\/paulgurney.com\/whats_new_blog\/2012\/10\/the-problem-with-domainkeys-identified-mail\/","title":{"rendered":"The problem with DomainKeys Identified Mail"},"content":{"rendered":"<p>Wired has been discussing an emerging <a title=\"wired DKIM article\" href=\"http:\/\/www.wired.com\/threatlevel\/2012\/10\/dkim-third-party-emailers\/2\/\" target=\"_blank\">email security vulnerability<\/a> this month.<\/p>\n<blockquote><p>The problem lies with DKIM keys (DomainKeys Identified Mail). DKIM involves a cryptographic key that domains use to sign e-mail originating from them \u2014 or passing through them \u2014 to validate to a recipient that the domain in the header information on an e-mail is correct and that the correspondence indeed came from the stated domain. When e-mail arrives at its destination, the receiving server can look up the public key through the sender\u2019s DNS records and verify the validity of the signature.<\/p><\/blockquote>\n<p>Learn more from the article, and ask your hosting company if they use strong \u2014 1024-bit \u2014 DKIM. Why?<\/p>\n<blockquote><p>A hacker who cracks a DKIM key can use it to send out phishing attacks to victims to trick them into believing that a fake e-mail is actually a legitimate e-mail from their bank or another trusted party. Such phishing attacks can be used to trick users into handing over the login credentials to their bank or e-mail account.<\/p><\/blockquote>\n","protected":false},"excerpt":{"rendered":"<p>Wired has been discussing an emerging email security vulnerability this month. The problem lies with DKIM keys (DomainKeys Identified Mail). DKIM involves a cryptographic key that domains use to sign e-mail originating from them \u2014 or passing through them \u2014 to validate to a recipient that the domain in the header information on an e-mail &hellip; <\/p>\n<p class=\"link-more\"><a href=\"https:\/\/paulgurney.com\/whats_new_blog\/2012\/10\/the-problem-with-domainkeys-identified-mail\/\" class=\"more-link\">Continue reading<span class=\"screen-reader-text\"> &#8220;The problem with DomainKeys Identified Mail&#8221;<\/span><\/a><\/p>\n","protected":false},"author":55,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_jetpack_newsletter_access":"","_jetpack_dont_email_post_to_subs":false,"_jetpack_newsletter_tier_id":0,"_jetpack_memberships_contains_paywalled_content":false,"_jetpack_memberships_contains_paid_content":false,"footnotes":""},"categories":[22,9],"tags":[],"class_list":["post-618","post","type-post","status-publish","format-standard","hentry","category-security","category-webhosting"],"jetpack_featured_media_url":"","jetpack_sharing_enabled":true,"jetpack_shortlink":"https:\/\/wp.me\/p415hC-9Y","_links":{"self":[{"href":"https:\/\/paulgurney.com\/whats_new_blog\/wp-json\/wp\/v2\/posts\/618","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/paulgurney.com\/whats_new_blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/paulgurney.com\/whats_new_blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/paulgurney.com\/whats_new_blog\/wp-json\/wp\/v2\/users\/55"}],"replies":[{"embeddable":true,"href":"https:\/\/paulgurney.com\/whats_new_blog\/wp-json\/wp\/v2\/comments?post=618"}],"version-history":[{"count":2,"href":"https:\/\/paulgurney.com\/whats_new_blog\/wp-json\/wp\/v2\/posts\/618\/revisions"}],"predecessor-version":[{"id":620,"href":"https:\/\/paulgurney.com\/whats_new_blog\/wp-json\/wp\/v2\/posts\/618\/revisions\/620"}],"wp:attachment":[{"href":"https:\/\/paulgurney.com\/whats_new_blog\/wp-json\/wp\/v2\/media?parent=618"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/paulgurney.com\/whats_new_blog\/wp-json\/wp\/v2\/categories?post=618"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/paulgurney.com\/whats_new_blog\/wp-json\/wp\/v2\/tags?post=618"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}