Re: [mailop] Super dumb gmail request ...

2024-08-30 Thread Ángel via mailop
On 2024-08-28 at 12:03 -0700, Brandon Long wrote: > On Mon, Aug 26, 2024 at 10:35 PM Viktor Dukhovni wrote: > > It is a sad state of affairs that no opt-out is available for users > > who manage strong per-site passwords, and prize long-term > > availability over often dubious security advantages o

Re: [mailop] Super dumb gmail request ...

2024-08-30 Thread Dave Crocker via mailop
On 8/29/2024 9:15 PM, Viktor Dukhovni via mailop wrote: Rather, I'm saying that my passwords are: You are not representative of typical users.  Anything that is designed for you will be irrelevant for typical users. It's fine to want features that are tailored to your preferences.  it's

Re: [mailop] Super dumb gmail request ...

2024-08-30 Thread Brandon Long via mailop
On Thu, Aug 29, 2024 at 9:18 PM Viktor Dukhovni via mailop < mailop@mailop.org> wrote: > On Wed, Aug 28, 2024 at 12:03:01PM -0700, Brandon Long wrote: > > On top of that, if you make such an opt-out available, the people > > using it are not going to be the people who have a level of know-how > >

Re: [mailop] Super dumb gmail request ...

2024-08-30 Thread Ángel via mailop
On 2024-08-27 at 12:25 +0200, Jaroslaw Rafa via mailop wrote: > 2FA is not configured on this account and never was. Yet a few years > ago it happened to me that when I logged in from an "unknown" device, > Google FORCED me to add a phone number to my account to send the > "verification code" to th

Re: [mailop] Uptick in Google Groups spam?

2024-08-30 Thread Ángel via mailop
On 2024-08-28 at 14:48 -0400, Mark E. Mallett via mailop wrote: > PS: I was just looking at the archive hosted at googlegroups on a > couple of them, and I notice that the "show original" item on the > message reading dropdown, which is what you would use in gmail to > look at the headers, is graye

Re: [mailop] [External] Understanding why a spammer is doing this

2024-08-30 Thread Matt Vernhout via mailop
Have you also configured your DKIM to oversign your mail as well? h= should include duplicate values for *Date: to: cc: Subject: From: Date: to: cc: Subject: From:* to prevent abuse and the replay of the emails. Also accessing an X= value to something reasonable (3 to 5 days) is a good idea, if

Re: [mailop] [External] Understanding why a spammer is doing this

2024-08-30 Thread Mark Fletcher via mailop
Hi All, Thanks for the responses and suggestions. I've deleted the old DKIM DNS record, and will be implementing a system to rotate the keys every 14 days, as a starting point. To answer some questions: I don't think the emails have been modified in any way, although I haven't seen a complete cop