logo

Exploit Weak DMARC.pdf

ID: ea9b1558-28e6-4ea4-be68-5ef59ea132fe

STIX ID: report--ea9b1558-28e6-4ea4-be68-5ef59ea132fe

Threat Score

85/100

Uploaded: 2026-08-14

Published Date: 2024-05-01

Last Modified Date: 2024-05-01

Created by: dogesec

TLP:CLEAR
ADMIRALTY:B2
PAP:CLEAR
...
...
The FBI, U.S. Department of State, and NSA jointly warn that North Korean Kimsuky actors are exploiting weak or absent DMARC policies to spoof trusted domains and conduct targeted spearphishing against think tanks, academia, media, and government experts; the advisory includes real sample emails and headers, red-flag indicators, recommended mitigations (set DMARC to p=quarantine or p=reject, configure rua reports), and reporting instructions.