Same-Domain Phishing
Same-Domain Phishing
- April 21, 2021
- Posted by: Nicola Selenu

Same-Domain Phishing refers to phishing campaigns where each message fraudulently uses a domain in the address portion of the RFC5322.From header without permission of the owner. This is one of the most effective types of phishing if it isn’t prevented with DMARC or other email authentication methods. By contrast, when a targeted domain implements DMARC and DMARC-enabled recipients can detect the impostors easily. Bad actors are then forced to use a different domain from the one they wish to impersonate, and this mismatch makes it easier for the email filters used by message recipients to detect these messages too.
Author:Nicola Selenu
Email Service Providers Handbook
The most comprehensive “Handbook of Email Service Providers“!
SPAMASSASSIN RULES
All SpamAssassin rules in one place, EXPLAINED!
SMTP COMMANDS
& REPLY CODES
All SMTP/ESMTP commands and reply codes in one place, EXPLAINED!
Free DNS Tool
Check the DNS records of your domain with our free DNS tool.
Deliverability Glossary
The most comprehensive Email Deliverability and Marketing Glossary!
- Term: Same-Domain Phishing
- Term: Authentication
- Term: From Header
- Term: Phishing
- Term: RFC5322
- Term: Domain Message Authentication Reporting & Conformance (DMARC)
- Term: Email Service Provider (ESP)
- Term: Deliverability
- Term: SpamAssassin
- Term: Extended Simple Mail Transfer Protocol (ESMTP)
- Term: Simple Mail Transfer Protocol (SMTP)
- Term: Domain Name System (DNS)
Same-Domain Phishing
Same-Domain Phishing refers to phishing campaigns where each message fraudulently uses a domain in the address portion of the RFC5322.From header without permission of the owner. This is one of the most effective types of phishing if it isn’t prevented with DMARC or other email authentication methods. By contrast, when a targeted domain implements DMARC and DMARC-enabled recipients can detect the impostors easily. Bad actors are then forced to use a different domain from the one they wish to impersonate, and this mismatch makes it easier for the email filters used by message recipients to detect these messages too.
« Back to Glossary Index- Term: Same-Domain Phishing
- Term: Authentication
- Term: From Header
- Term: Phishing
- Term: RFC5322
- Term: Domain Message Authentication Reporting & Conformance (DMARC)
- Term: Email Service Provider (ESP)
- Term: Deliverability
- Term: SpamAssassin
- Term: Extended Simple Mail Transfer Protocol (ESMTP)
- Term: Simple Mail Transfer Protocol (SMTP)
- Term: Domain Name System (DNS)
- Term: Header
Author:Nicola Selenu
Email Service Providers Handbook
The most comprehensive “Handbook of Email Service Providers“!
SPAMASSASSIN RULES
All SpamAssassin rules in one place, EXPLAINED!
SMTP COMMANDS
& REPLY CODES
All SMTP/ESMTP commands and reply codes in one place, EXPLAINED!
Free DNS Tool
Check the DNS records of your domain with our free DNS tool.
Deliverability Glossary
The most comprehensive Email Deliverability and Marketing Glossary!
« Back to Glossary Index- Term: Same-Domain Phishing
- Term: Authentication
- Term: From Header
- Term: Phishing
- Term: RFC5322
- Term: Domain Message Authentication Reporting & Conformance (DMARC)
- Term: Email Service Provider (ESP)
- Term: Deliverability
- Term: SpamAssassin
- Term: Extended Simple Mail Transfer Protocol (ESMTP)
- Term: Simple Mail Transfer Protocol (SMTP)
- Term: Domain Name System (DNS)
- Term: Header