Tagged: Exchange Online

Cropped Pexels Christina Morillo 1181263 Scaled 1.jpg 0

From addresses (P2 From headers) without a Sender header

Microsoft will comply with RFC 5322 (https://www.rfc-editor.org/rfc/rfc5322#section-3.6.2) which mandates the Sender header to be present and contain a single address if the From header has more than one address. Noncompliance with this could be exploited by attackers, allowing them to impersonate a sender address by misleading the client into using the From header to determine the sender instead of the...