Skip to main navigation Skip to search Skip to main content

Advanced Analysis of Email Sender Spoofing Attack and Related Security Problems

  • Beiyuan Yu
  • , Pan Li
  • , Jianwei Liu
  • , Ziyu Zhou
  • , Yiran Han
  • , Zongxiao Li
  • Beihang University
  • Peking University
  • TextitBeihang University

Research output: Chapter in Book/Report/Conference proceedingConference contributionpeer-review

Abstract

A mail spoofing attack is a harmful activity that modifies the source of the mail and trick users into believing that the message originated from a trusted sender whereas the actual sender is the attacker. Based on the previous work, this paper analyzes the transmission process of an email. Our work identifies new attacks suitable for bypassing SPF, DMARC, and Mail User Agent's protection mechanisms. We can forge much more realistic emails to penetrate the famous mail service provider like Tencent by conducting the attack. By completing a large-scale experiment on these well-known mail service providers, we find some of them are affected by the related vulnerabilities. Some of the bypass methods are different from previous work. Our work found that this potential security problem can only be effectively protected when all email service providers have a standard view of security and can configure appropriate security policies for each email delivery node. In addition, we also propose a mitigate method to defend against these attacks. We hope our work can draw the attention of email service providers and users and effectively reduce the potential risk of phishing email attacks on them.

Original languageEnglish
Title of host publicationProceedings - 2022 IEEE 9th International Conference on Cyber Security and Cloud Computing and 2022 IEEE 8th International Conference on Edge Computing and Scalable Cloud, CSCloud-EdgeCom 2022
PublisherInstitute of Electrical and Electronics Engineers Inc.
Pages80-85
Number of pages6
ISBN (Electronic)9781665480666
DOIs
StatePublished - 2022
Event9th IEEE International Conference on Cyber Security and Cloud Computing and 8th IEEE International Conference on Edge Computing and Scalable Cloud, CSCloud-EdgeCom 2022 - Xi�an, China
Duration: 25 Jun 202227 Jun 2022

Publication series

NameProceedings - 2022 IEEE 9th International Conference on Cyber Security and Cloud Computing and 2022 IEEE 8th International Conference on Edge Computing and Scalable Cloud, CSCloud-EdgeCom 2022

Conference

Conference9th IEEE International Conference on Cyber Security and Cloud Computing and 8th IEEE International Conference on Edge Computing and Scalable Cloud, CSCloud-EdgeCom 2022
Country/TerritoryChina
CityXi�an
Period25/06/2227/06/22

Keywords

  • Anti-Spam
  • Email ecosystem
  • Mail spoofing attack
  • Mail spoofing detection method
  • Sender source security check
  • Social engineering attack

Fingerprint

Dive into the research topics of 'Advanced Analysis of Email Sender Spoofing Attack and Related Security Problems'. Together they form a unique fingerprint.

Cite this