Half of all 2020 Presidential Candidates are Susceptible to Impersonation Attacks

Stu Sjouwerman | May 9, 2019

Recent analysis of the websites of 16 current presidential candidates indicate insufficient security to stop attackers from sending emails out impersonating the campaign.

Email security vendors Agari and Valimail take advantage of DMARC (Domain-based Message Authentication, Reporting and Conformance) – an email authentication, policy, and reporting protocol designed – to help organizations detect and prevent email spoofing.

According to these firms, only 8 of the 16 current presidential candidates have DMARC implemented, with only 2 using any kind of advanced email solution.

presidential_candidates_email_security

 

Without proper use of DMARC, presidential candidates are susceptible to email spoofing attacks where cybercriminals can send out emails pretending to be from the campaign, using social engineering and malware to claim victims of supporting businesses and voters.

The same is true of any organization; without DMARC properly in place, it’s easy for cybercriminals to spoof your domain, using it as a tool to attack employees, contractors, vendors, and customers.

Organizations should determine the state of their domain using a spoofing test, and look to implement DMARC controls, potentially leveraging third-party solutions to further ensure that inbound email domains meet DMARC’s security requirements before being accepted.


Find out how affordable new-school security awareness training is for your organization. Get a quote now.

 
Get A Quote
Request A Demo
 

Secure the Digital Workforce: Human + AI

KnowBe4 empowers the human and AI workforce to make safer security decisions every day. Trusted by over 70,000 organizations worldwide, we help strengthen security culture and manage risk. Our comprehensive AI-driven platform includes awareness and compliance training, cloud email security, real-time coaching, crowdsourced anti-phishing, AI Defense Agents, agent security and more. As the only global security platform of its kind, KnowBe4 provides personalized content, tools, and techniques to keep the modern workforce safe from phishing, vishing, deepfakes, and emerging threats.

Get the latest insights, trends and security news. Subscribe to CyberheistNews.