Over Two-Thirds of Domains Still Lack DMARC Enforcement 13 Years On
DMARC, an email authentication protocol designed to prevent domain spoofing and phishing, has been publicly available since 2012. Despite over a decade of availability, a recent analysis found that 68.4% of domains have still not enabled DMARC enforcement. The gap leaves a significant portion of internet domains vulnerable to email-based attacks such as spoofing and impersonation. The findings also highlight fragmentation in how reporting addresses are configured, further undermining the protocol's effectiveness. The slow adoption raises ongoing concerns about baseline email security practices across the web.
This is an AI-generated summary. ShortSingh links to the original source for the complete article.
Discussion (0)
Log in to join the discussion and vote.
Log in