<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	
	>
<channel>
	<title>
	Comments on: #AxisOfEasy 335:  26 Billion Records Combined In &#8216;Mother Of All Breaches&#8217; Data Leak	</title>
	<atom:link href="https://axisofeasy.com/aoe/axisofeasy-335-26-billion-records-combined-in-mother-of-all-breaches-data-leak/feed/" rel="self" type="application/rss+xml" />
	<link>https://axisofeasy.com/aoe/axisofeasy-335-26-billion-records-combined-in-mother-of-all-breaches-data-leak/?pk_campaign=feed&#038;pk_kwd=axisofeasy-335-26-billion-records-combined-in-mother-of-all-breaches-data-leak&#038;utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=axisofeasy-335-26-billion-records-combined-in-mother-of-all-breaches-data-leak</link>
	<description>Rapid Coverage of a World Gone Full Cyberpunk</description>
	<lastBuildDate>Tue, 06 Feb 2024 16:13:29 +0000</lastBuildDate>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=6.9.4</generator>
	<item>
		<title>
		By: Andy Konecny		</title>
		<link>https://axisofeasy.com/aoe/axisofeasy-335-26-billion-records-combined-in-mother-of-all-breaches-data-leak/?pk_campaign=feed&#038;pk_kwd=axisofeasy-335-26-billion-records-combined-in-mother-of-all-breaches-data-leak/#comment-129390</link>

		<dc:creator><![CDATA[Andy Konecny]]></dc:creator>
		<pubDate>Sat, 03 Feb 2024 21:59:35 +0000</pubDate>
		<guid isPermaLink="false">https://axisofeasy.com/?p=29270#comment-129390</guid>

					<description><![CDATA[Some of the Cobblers Children&#039;s Children still barefoot

I&#039;ve had a tagging rule in my email client to flag SPF issues found in the message source(X-Spam-Status codes) for a couple of years, so I was surprised at the claim of not having SPF in place.  It looks like you have had it for at least some of your infrastructure for a while.  You had me checking the relevant parts of a sampling of emails from you.
A) mail from your systems to EasyMail mailboxes, does go through your spam checker.  Good
B) X-Spam-Status: having a test for SPF_PASS  since about 2016 is Good  
C) Received-SPF:  showing details is a much newer thing, 2022ish., A good thing

Running that tag flagging on my entire mailbox, I only see one instance of a fail, and that was a subdomain/host I hadn&#039;t seen mail from before, nor see anything about it now. Relates to one of your migrations, so may well have been a host name that doesn&#039;t exist anymore.  Classic simple Unix/linux mail command does send from user@hostFQD much to my own frustration.
Clearly some of the cobbler&#039;s grandchildren got shoes before the children. 

Historic DMARC isn&#039;t something we can readily see, but we can look up now.

Some, but not all of your subdomains do have SPF records (for years) but not a DMARC

** Time to check them all! **

I thought it was Mark Twain with that quote.  ]]></description>
			<content:encoded><![CDATA[<p>Some of the Cobblers Children&#8217;s Children still barefoot</p>
<p>I&#8217;ve had a tagging rule in my email client to flag SPF issues found in the message source(X-Spam-Status codes) for a couple of years, so I was surprised at the claim of not having SPF in place.  It looks like you have had it for at least some of your infrastructure for a while.  You had me checking the relevant parts of a sampling of emails from you.<br />
A) mail from your systems to EasyMail mailboxes, does go through your spam checker.  Good<br />
B) X-Spam-Status: having a test for SPF_PASS  since about 2016 is Good<br />
C) Received-SPF:  showing details is a much newer thing, 2022ish., A good thing</p>
<p>Running that tag flagging on my entire mailbox, I only see one instance of a fail, and that was a subdomain/host I hadn&#8217;t seen mail from before, nor see anything about it now. Relates to one of your migrations, so may well have been a host name that doesn&#8217;t exist anymore.  Classic simple Unix/linux mail command does send from user@hostFQD much to my own frustration.<br />
Clearly some of the cobbler&#8217;s grandchildren got shoes before the children. </p>
<p>Historic DMARC isn&#8217;t something we can readily see, but we can look up now.</p>
<p>Some, but not all of your subdomains do have SPF records (for years) but not a DMARC</p>
<p>** Time to check them all! **</p>
<p>I thought it was Mark Twain with that quote.  </p>
]]></content:encoded>
		
			</item>
		<item>
		<title>
		By: Eric Stellings		</title>
		<link>https://axisofeasy.com/aoe/axisofeasy-335-26-billion-records-combined-in-mother-of-all-breaches-data-leak/?pk_campaign=feed&#038;pk_kwd=axisofeasy-335-26-billion-records-combined-in-mother-of-all-breaches-data-leak/#comment-129351</link>

		<dc:creator><![CDATA[Eric Stellings]]></dc:creator>
		<pubDate>Fri, 02 Feb 2024 23:21:33 +0000</pubDate>
		<guid isPermaLink="false">https://axisofeasy.com/?p=29270#comment-129351</guid>

					<description><![CDATA[Larry Brock]]></description>
			<content:encoded><![CDATA[<p>Larry Brock</p>
]]></content:encoded>
		
			</item>
	</channel>
</rss>
