Exploit Weak DMARC.pdf
ID: ea9b1558-28e6-4ea4-be68-5ef59ea132fe
STIX ID: report--ea9b1558-28e6-4ea4-be68-5ef59ea132fe
Threat Score
85/100
Uploaded: 2026-08-14
Published Date: 2024-05-01
Last Modified Date: 2024-05-01
Created by: dogesec
TLP:CLEAR
ADMIRALTY:B2
PAP:CLEAR
...
...
The FBI, U.S. Department of State, and NSA jointly warn that North Korean Kimsuky actors are exploiting weak or absent DMARC policies to spoof trusted domains and conduct targeted spearphishing against think tanks, academia, media, and government experts; the advisory includes real sample emails and headers, red-flag indicators, recommended mitigations (set DMARC to p=quarantine or p=reject, configure rua reports), and reporting instructions.
