POPULARITY
במשך השנים "התחנכנו" על כך שככל שנבקש פחות פרטים ונקל על תהליך ההרשמה, נגדיל את רשימת התפוצה. מצד אחד, הרשמה נטולת חיכוך (friction) יכולה להגדיל את שיעורי ההמרה ואולי גם לשפר את חוויית המשתמש. בדרך כלל, זו הגישה שרוב המותגים נוקטים בה: בקשה של כתובת אימייל בלבד, או לכל היותר שם וכתובת אימייל. פעמים רבות כדי למקסם את כמות ההרשמות, אפילו נשים פופ-אפים באתר.ואמנם ככל שנבקש פחות פרטים (כלומר נקטין את החיכוך) נקבל יותר הרשמות ונגדיל את כמות הנרשמים, אבל יתכן שזה יבוא על חשבון איכות הנרשמים ורמת המעורבות שלהם עליה נשלם בעתיד באתגרים הקשורים ל-deliverability ובכל הקשור ב-"Sunset Policy". לאחרונה נשמעים קולות אחרים סביב השאלה האם כדאי במקרים מסוימים דווקא להגביר את החיכוך בתהליכי הרשמה לדיוור. כלומר להפוך את ההרשמה לרשימות דיוור למעט יותר מורכבת על ידי הוספת חיכוך בשלב ההרשמה וגם בשלבים הבאים - לאורך נקודות המגע הראשוניות במסע הלקוח. בצד האחד יש הטוענים כי הפחתת חיכוך, כלומר, צמצום שלבים או פישוט הטפסים משפרת את חוויית המשתמש ומגדילה את שיעורי ההמרה. לעומתם, יש הסבורים כי פשטות יתר עלולה לפגוע באיכות הלידים ורמת המעורבות שלהם בעתיד.בואו ונסקור את שתי האפשרויות, ומה היתרונות והחסרונות של כל אחד מהם.----CRM.BUZZ הוא בלוג ופודקאסט בעברית העוסקים באימייל מרקטינג, עבירוּת אימיילים ושיווק.יוצר הפודקאסט והבלוג הוא סלע יפה (Sella Yoffe), מומחה בינ"ל לעבירוּת אימיילים ושיווק באימייל, מסייע למדוורים גלובליים, סטרטאפים, סוכנויות אימייל ומערכות דיוור (ESPs) עם מסירות אימייל, אימות אימייל (SPF, DKIM, DMARC, BIMI), ואסטרטגיית אימייל. קישור אל הבלוג
総務省は9月1日、電気通信事業者に対し、フィッシングメール対策の強化を要請したと発表した。
An (almost) catastrophic OpenZFS bug, crawler plague and the fragility of the web, Classic CDE (Common Desktop Environment) coming to OpenBSD, Some notes on DMARC policy inheritance and a gotcha, GNAT (Ada) is in fact fully supported on illumos, Eighteen Years of Greytrapping, and more NOTES This episode of BSDNow is brought to you by Tarsnap (https://www.tarsnap.com/bsdnow) and the BSDNow Patreon (https://www.patreon.com/bsdnow) Headlines An (almost) catastrophic OpenZFS bug and the humans that made it (and Rust is here too) (https://despairlabs.com/blog/posts/2025-07-10-an-openzfs-bug-and-the-humans-that-made-it) The current (2025) crawler plague and the fragility of the web (https://utcc.utoronto.ca/~cks/space/blog/web/WebIsKindOfFragile) News Roundup Classic CDE (Common Desktop Environment) coming to OpenBSD (https://undeadly.org/cgi?action=article;sid=20250730080301) Some notes on DMARC policy inheritance and a gotcha (https://utcc.utoronto.ca/~cks/space/blog/spam/DMARCPolicyInheritanceNotes) Despite thoughts to the contrary, GNAT (Ada) is in fact fully supported on illumos (https://briancallahan.net/blog/20250817.html) Eighteen Years of Greytrapping - Is the Weirdness Finally Paying Off? (https://bsdly.blogspot.com/2025/08/eighteen-years-of-greytrapping-is.html) Tarsnap This weeks episode of BSDNow was sponsored by our friends at Tarsnap, the only secure online backup you can trust your data to. Even paranoids need backups. Feedback/Questions Send questions, comments, show ideas/topics, or stories you want mentioned on the show to feedback@bsdnow.tv (mailto:feedback@bsdnow.tv) Join us and other BSD Fans in our BSD Now Telegram channel (https://t.me/bsdnow)
איך לפתור בעיות עבירות אימייל באתרי וורדפרס?ניהול אתר וורדפרס, גם אם מדובר באתר הפשוט ביותר, כולל צורך בשליחת אימיילים. לדוגמא שליחת אימייל לפתיחת משתמש חדש והסיסמה שלו, הודעות שהאתר שולח אל מנהלי האתר לגבי שגיאות ואם מדובר באתר קצת יותר מורכב, שזה בדרך כלל המצב, שליחת אימיילים שונים כגון אישורי הרשמה, איפוס סיסמה, התראות למנהל האתר וללקוחות הקצה על רכישות בחנות WooCommerce, מילוי טפסי ״צור קשר״ ועוד. בעיות עבירוּת אימיילים (Email Deliverability) מתרחשות כאשר אימיילים הנשלחים מהאתר אינם מגיעים לתיבת ה-Inbox של הנמענים אלא אל הספאם, או שאינם נמסרים כלל (נדחים). בפרק זה זה אסקור מדוע בעיות כאלה קורות וכיצד לפתור אותן. ---CRM.BUZZ הוא בלוג ופודקאסט בעברית העוסקים באימייל מרקטינג, עבירוּת אימיילים ושיווק.יוצר הפודקאסט והבלוג הוא סלע יפה (Sella Yoffe), מומחה בינ"ל לעבירוּת אימיילים ושיווק באימייל, מסייע למדוורים גלובליים, סטרטאפים, סוכנויות אימייל ומערכות דיוור (ESPs) עם מסירות אימייל, אימות אימייל (SPF, DKIM, DMARC, BIMI), ואסטרטגיית אימייל. קישור אל הבלוג
Send us a textCheck us out at: https://www.cisspcybertraining.com/Get access to 360 FREE CISSP Questions: https://www.cisspcybertraining.com/offers/dzHKVcDB/checkoutGet access to my FREE CISSP Self-Study Essentials Videos: https://www.cisspcybertraining.com/offers/KzBKKouvThe digital world has opened up unprecedented opportunities for scammers, and seniors have become prime targets. In this alarming and informative episode, we dive deep into the FBI's recent warning about AI-driven "Phantom Hacker" scams that have already stolen over a billion dollars from American seniors through sophisticated three-stage attacks.What makes these scams particularly devastating is the deployment of AI voice cloning technology. With just a small sample of someone's speech, scammers can create perfect voice replicas that sound exactly like trusted family members or financial advisors. This technology has advanced to the point where distinguishing between real and AI-generated voices is nearly impossible for most people. As cybersecurity professionals, we have a responsibility to protect vulnerable populations through education and clear verification protocols.The episode transitions into a comprehensive review of CISSP Domain 4, covering essential communication and network security concepts. We explore voice communications security for both traditional telephone networks and modern VoIP systems, email security protocols including SPF, DKIM, and DMARC, and remote access considerations with VPNs. The discussion covers critical decisions between split and full tunneling, network address translation complexities, and third-party risk management through formal agreements and vendor assessments.Whether you're preparing for the CISSP exam or looking to strengthen your organization's communication security posture, this episode provides actionable insights on protecting against today's most sophisticated threats. The convergence of AI technology with traditional social engineering tactics demands a new approach to security awareness and technical controls—one that acknowledges voice is no longer a reliable authentication factor on its own.Ready to continue your CISSP journey? Visit CISSPCyberTraining.com for free resources including practice questions, rapid review videos, and a comprehensive study plan designed to help you pass the exam on your first attempt.Support the showGain exclusive access to 360 FREE CISSP Practice Questions delivered directly to your inbox! Sign up at FreeCISSPQuestions.com and receive 30 expertly crafted practice questions every 15 days for the next 6 months—completely free! Don't miss this valuable opportunity to strengthen your CISSP exam preparation and boost your chances of certification success. Join now and start your journey toward CISSP mastery today!
Send us a textWhat do street food in Vietnam, varsity football, and DMARC email authentication have in common? In this immersive episode, Joey Pinz sits down with Michael Chester for a lively conversation that connects personal transformation with global impact.
פרק זה עוסק באבחנה בין שלושה סוגים של אימיילים שעסקים שולחים: שיווקיים, טרנזקציוניים ותפעוליים. אימיילים שיווקיים מיועדים לקידום מכירות ונשלחים לרשימות תפוצה גדולות, לרוב בלוח זמנים קבוע, ודורשים הסכמה ואפשרות הסרה. אימיילים טרנזקציוניים הם אישיים, נשלחים בתגובה לפעולה ספציפית של המשתמש (כגון אישור הזמנה או איפוס סיסמה), ומטרתם לספק מידע חיוני בזמן אמת. הם אינם שיווקיים במהותם וזוכים לשיעורי מעורבות גבוהים במיוחד.אימיילים תפעוליים הם קטגוריה שנמצאת בין שני הסוגים הללו. הם אינם נובעים מפעולה מיידית ואישית של המשתמש כמו טרנזקציוניים, וגם אינם נועדו למכירה כמו שיווקיים. מטרתם היא לספק מידע חשוב ושוטף על השירות או החשבון של הלקוח, כמו דוחות תקופתיים, חשבונות חודשיים, התראות על סיום תהליך במערכת, הודעות על שינויים בתנאי שירות, או עדכוני אבטחה. למרות חשיבותם לשמירה על אמון הלקוח וחווית השירות, לעיתים קרובות הם "נופלים בין הכיסאות" במערכות הדיוור, מכיוון שאינם מוגדרים בצורה מובהקת כמו השיווקיים והטרנזקציוניים.הפרדה בין סוגי האימיילים, לרוב על ידי שימוש בתתי-דומיינים נפרדים לכל סוג, חיונית לאופטימיזציה של העבירוּת (Deliverability) שלהם. אימיילים טרנזקציוניים ותפעוליים, בעלי שיעורי מעורבות גבוהים יותר, בונים מוניטין חיובי מול ספקיות האימייל, ולכן שמירתם על דומיין נפרד מהאימיילים השיווקיים (הנושאים סיכון גבוה יותר לתלונות ספאם או שיעורי פתיחה נמוכים) מבטיחה שהודעות קריטיות אלו יגיעו לתיבת הדואר הנכנס. המאמר מדגיש כי בעוד שאימיילים שיווקיים כפופים לרגולציה מחמירה (כמו דרישת הסכמה ואפשרות הסרה), אימיילים טרנזקציוניים ותפעוליים פטורים בדרך כלל מדרישות אלו, כל עוד הם נשארים אינפורמטיביים ולא מכילים תוכן שיווקי.---CRM.BUZZ הוא בלוג ופודקאסט בעברית העוסקים באימייל מרקטינג, עבירוּת אימיילים ושיווק.יוצר הפודקאסט והבלוג הוא סלע יפה (Sella Yoffe), מומחה בינ"ל לעבירוּת אימיילים ואימייל מרקטינג, מסייע למדוורים גלובליים, סטרטאפים, סוכנויות אימייל ומערכות דיוור (ESPs) עם מסירות אימייל, אימות אימייל (SPF, DKIM, DMARC, BIMI), ואסטרטגיית אימייל. קישור אל הבלוג
Las nuevas estafas en Gmail usan inyección de instrucciones para engañar a usuarios y hasta a defensas con inteligencia artificial Por Félix Riaño @LocutorCo Un ataque de phishing está usando inteligencia artificial para burlar las defensas de Gmail y robar contraseñas. La campaña incluye correos falsos de soporte técnico, llamadas telefónicas y hasta páginas que imitan al login de Google. Expertos en ciberseguridad advierten que miles de millones de cuentas están en riesgo. Google ha confirmado que la mayoría de usuarios va a tener que cambiar sus contraseñas y activar nuevos métodos de autenticación. El engaño digital nunca se queda quieto. Ahora los atacantes están probando un nuevo truco: no se conforman con engañar a los humanos, también quieren manipular a las máquinas que nos protegen. Un correo electrónico que aparenta ser una alerta de expiración de contraseña llega a la bandeja de entrada, acompañado de un enlace disfrazado de legítimo. Hasta aquí parece un phishing clásico. Pero lo que no se ve a simple vista es que el código del mensaje contiene instrucciones ocultas dirigidas a modelos de inteligencia artificial, como los que usan muchas empresas de seguridad para clasificar correos. El resultado puede ser que la propia IA se distraiga y no bloquee la amenaza. Y mientras tanto, ¿cuántos usuarios siguen creyendo que Google les va a enviar un mensaje pidiendo su clave?Los hackers ahora atacan a las personas y a la inteligencia artificial Los investigadores explican que este ataque comenzó con correos que parecían muy convincentes. El asunto decía “Notificación de expiración de inicio de sesión” con hora y fecha precisas. El cuerpo del mensaje aseguraba que la contraseña estaba a punto de expirar, presionando al usuario a hacer clic en un enlace. El truco clásico de generar urgencia. Lo interesante es que los correos pasaron filtros básicos: superaron pruebas SPF y DKIM, que sirven para verificar la autenticidad, y solo fallaron en DMARC. Esto permitió que aterrizaran en bandejas de entrada reales. Al seguir el enlace, la víctima encontraba primero una página con captcha, diseñada para impedir que los escáneres automáticos llegaran al verdadero destino: una página idéntica al login de Gmail, con código oculto para robar credenciales. Lo más alarmante es que los atacantes escondieron instrucciones tipo “prompt” en el código del correo. Estos mensajes secretos están redactados en el estilo que usamos con sistemas como ChatGPT o Gemini. Así, si una herramienta de seguridad basada en inteligencia artificial analizaba el correo, podía quedar atrapada en un bucle de razonamiento o distraída generando explicaciones irrelevantes. En otras palabras, los hackers encontraron la manera de hackear a la propia inteligencia artificial. El ataque no se limita a engañar a las personas, también busca engañar a los filtros automáticos. A esto se suma que muchos usuarios siguen sin activar medidas básicas como la autenticación de dos factores o los passkeys, que reemplazan a las contraseñas. Y si a eso agregamos que se filtraron datos de hasta 2.500 millones de cuentas en un ataque previo, la combinación es peligrosa. Google ha reaccionado confirmando que la mayoría de usuarios de Gmail va a tener que cambiar su contraseña. Recomienda hacerlo de inmediato y no usar la misma clave en diferentes servicios. La empresa también insiste en activar passkeys, que permiten ingresar sin contraseña y reducen la posibilidad de robo. Expertos recomiendan usar aplicaciones de autenticación en lugar de códigos SMS, que son más fáciles de interceptar. Además, recuerdan una regla de oro: Google nunca va a llamar por teléfono para pedirte tu clave, ni a enviarte un mensaje con enlaces directos para iniciar sesión. Si ves un mensaje sospechoso, verifica la actividad en la página oficial de seguridad de tu cuenta. Los grupos de hackers como ShinyHunters ya han usado tácticas similares para robar datos de millones de usuarios en otras plataformas, así que no se trata de un caso aislado. Este tipo de ataques mezcla varias técnicas de engaño. Hay “vishing”, que son llamadas telefónicas en las que un supuesto soporte técnico pide códigos. Hay correos falsos que imitan el estilo de las alertas de seguridad reales de Google. Y ahora, se suma la inyección de instrucciones para confundir a los sistemas de inteligencia artificial. Según la Comisión Federal de Comercio de Estados Unidos, también se han visto casos similares con Amazon y PayPal. En estos, los usuarios reciben mensajes falsos de reembolso o de fallos en la entrega de productos. La táctica es siempre la misma: generar miedo o urgencia, y convencer a la persona de entregar sus datos sin pensar demasiado. Lo novedoso aquí es que también intentan manipular la tecnología que debería detenerlos. Los expertos en seguridad advierten que, así como los filtros se vuelven más inteligentes, los atacantes también se actualizan. Los ataques de phishing en Gmail evolucionan. Ahora mezclan engaños para personas y trucos contra la inteligencia artificial. Cambia tu contraseña, activa passkeys y revisa tus alertas solo en la página oficial de Google. Y no olvides seguir Flash Diario en Spotify para mantenerte protegido con la mejor información. Nuevo phishing en Gmail engaña a usuarios y hasta a la inteligencia artificial. Google exige cambiar contraseñas y activar passkeys.
こうした諸課題を受けて開催されるのが「DMARC/25 LAB」である。今回の交流会では最新の業界動向や実際の導入事例、運用上の工夫・課題などの情報共有を行い、参加者が自社の取り組みに活かせる具体的なヒントを得るとともに、関係者間の連携強化やノウハウの相互提供につなげることを目的としている。
אם זה הולך כמו ברווז, נראה כמו ברווז, אז אולי זה בכלל... פישינג?
Email isn't dead but your inbox deliverability might be. Use code:WEBINAR25 for 25% off on all the Warmy subscriptions https://www.warmy.io/ In this must-watch episode, we dive into the real reasons why your cold emails, newsletters, and campaigns aren't reaching your audience and it's not your subject line. Daniel Shnaider, co-founder of Warmy.io and seasoned SaaS entrepreneur, reveals the hidden traps most brands fall into from domain reputation to DMARC, SPF, and DKIM settings and explains how AI-powered email warm-up strategies can revive your campaigns.
יש כרטיס מועדון? על האבולוציה של מועדוני לקוחותאני בעולם הדיוור, עוד כשהיו עושים אותו בדואר.מועדוני לקוחות כבר הפכו לסוג של קלישאה. מי יכול לזכור לכמה מועדונים הוא הצטרף ומה מיוחד במועדון זה או אחר?לצד בלי סוף "כלום מאותו הדבר", יש גם דוגמאות טובות למועדוני לקוחות.ב-1993 או אולי זה היה ב-1994 הייתי בהרצאה של אייזיק ולדמן, שהיה אז מנכ"ל איי-בי דאטה, שהייתה החברה הראשונה בארץ להקמה וניהול של מועדוני לקוחות. הייתה לו הרצאה מרתקת על מועדוני לקוחות. לימים יצא לנו לעבוד יחד והפכנו להיות חברים. הוא סיפר בהרצאה: שכשהיינו ילדים, אכלנו לארוחת הבוקר ביצה. זו הייתה יכולה להיות חביתה, ביצה עין או מקושקשת, אבל זו הייתה ביצה. לא היתה בעיית נאמנות. זה מה שאכלנו. מה אוכלים היום הילדים? קורנפלקס כזה או אחר. יש בלי סוף סוגים ומותגים ומי זוכה? מי נאמן למותג כזה או אחר? כל פעם יש שגעון למותג זה או אחר ואין נאמנות למותג ספציפי.מועדוני לקוחות נולדו מתוך כוונה לשמר נאמנות למותג.אם נסתכל על הפירמידה ההפוכה של משפך שיווקי קלאסי, המשולש הקטן בתחתית המשפך הוא גרעין הלקוחות המרוצים, עד כדי כך שהם ממליצים. ----CRM.BUZZ הוא בלוג ופודקאסט בעברית העוסקים באימייל מרקטינג, עבירוּת אימיילים ושיווק.יוצר הפודקאסט והבלוג הוא סלע יפה (Sella Yoffe), מומחה בינ"ל לעבירוּת אימיילים ושיווק באימייל, מסייע למדוורים גלובליים, סטרטאפים, סוכנויות אימייל ומערכות דיוור (ESPs) עם מסירות אימייל, אימות אימייל (SPF, DKIM, DMARC, BIMI), ואסטרטגיית אימייל. קישור אל הבלוג
פודקאסט עם Dela Quist באנגליתפודקאסט עם Dela Quist בעבריתפודקאט באנגלית עם Jakub Olexa על תופעת האינטראקציות הלא אנושיות (פתיחות והקלקלות שווא)---CRM.BUZZ הוא בלוג ופודקאסט בעברית העוסקים באימייל מרקטינג, עבירוּת אימיילים ושיווק.יוצר הפודקאסט והבלוג הוא סלע יפה (Sella Yoffe), מומחה בינ"ל לעבירוּת אימיילים ושיווק באימייל, מסייע למדוורים גלובליים, סטרטאפים, סוכנויות אימייל ומערכות דיוור (ESPs) עם מסירות אימייל, אימות אימייל (SPF, DKIM, DMARC, BIMI), ואסטרטגיית אימייל. CRM.BUZZ הוא בלוג ופודקאסט בעברית העוסקים באימייל מרקטינג, עבירוּת אימיילים ושיווק.יוצר הפודקאסט והבלוג הוא סלע יפה (Sella Yoffe), מומחה בינ"ל לעבירוּת אימיילים ושיווק באימייל, מסייע למדוורים גלובליים, סטרטאפים, סוכנויות אימייל ומערכות דיוור (ESPs) עם מסירות אימייל, אימות אימייל (SPF, DKIM, DMARC, BIMI), ואסטרטגיית אימייל. קישור אל הבלוג
Please enjoy this encore of Word Notes. An open source email authentication protocol designed to prevent emails, spoofing in phishing, business email compromise or BEC, and other email-based attacks. CyberWire Glossary link: https://thecyberwire.com/glossary/pegasus Audio reference link:"Global Cyber Alliance's Phil Reitinger talks DMARC adoption" “Global Cyber Alliance's Phil Reitinger Talks DMARC Adoption.” YouTube Video. YouTube, April 27, 2018
Please enjoy this encore of Word Notes. An open source email authentication protocol designed to prevent emails, spoofing in phishing, business email compromise or BEC, and other email-based attacks. CyberWire Glossary link: https://thecyberwire.com/glossary/pegasus Audio reference link:"Global Cyber Alliance's Phil Reitinger talks DMARC adoption" “Global Cyber Alliance's Phil Reitinger Talks DMARC Adoption.” YouTube Video. YouTube, April 27, 2018 Learn more about your ad choices. Visit megaphone.fm/adchoices
CRM.BUZZ הוא בלוג ופודקאסט בעברית החוגג היום 300 פרקים העוסקים באימייל מרקטינג, עבירוּת אימיילים ושיווק.יוצר הפודקאסט והבלוג הוא סלע יפה (Sella Yoffe), מומחה בינ"ל לעבירוּת אימיילים ושיווק באימייל, מסייע למדוורים גלובליים, סטרטאפים, סוכנויות אימייל ומערכות דיוור (ESPs) עם מסירות אימייל, אימות אימייל (SPF, DKIM, DMARC, BIMI), ואסטרטגיית אימייל. קישור אל הבלוג
“It's not about solving for DMARC. Yeah, you do that as a byproduct, but we really enable the MSP to go grow their business.” — Mike Anderson, EasyDMARC Technology Reseller News sat down with Mike Anderson of EasyDMARC for a live podcast recording at the opening day of ChannelCon, GTIA's signature event. In a candid and engaging conversation with publisher Doug Green, Anderson revealed how EasyDMARC is turning email authentication into a growth engine for managed service providers (MSPs). While DMARC (Domain-based Message Authentication, Reporting, and Conformance) may sound like a technical checkbox, Anderson says it's actually a gateway to new revenue and customer acquisition when paired with EasyDMARC's purpose-built analytics and sales enablement platform. “We're not just a tool,” Anderson explained. “We're a full go-to-market engine for MSPs.” The company offers a platform that not only simplifies DMARC configuration with built-in DNS templates and documentation for 1,500+ top providers, but also delivers white-labeled reports, risk assessments, and automated marketing assets—like drip campaigns, call scripts, and email templates—designed to help MSPs win new business. With over 2,500 MSPs onboard and growing by 70–100 per month, Anderson attributes the rapid adoption to a combination of ease-of-use and tangible results. He recounted a typical success story: an MSP identifies a law firm with broken email delivery and marketing systems, costing them $30,000 in missed revenue. “The MSP comes in, fixes it for a fraction of that, and signs them to a monitoring plan—immediate ROI, happy client, and recurring revenue.” EasyDMARC's platform is not only about fixing email authentication but enabling MSPs to create their own economic momentum. “We give MSPs the tools to go prospect, sell, and close,” Anderson said, pointing to the company's growing international reach and dedicated MSP portal. Learn more at EasyDMARC.com, where MSPs can start a free trial. ChannelCon attendees can mention the event for a free first month. About EasyDMARC EasyDMARC is a leading DMARC and email security platform designed to help businesses and MSPs protect their domains, prevent phishing, and ensure compliant email delivery. With built-in sales tools, automation, and analytics, EasyDMARC transforms security into a growth opportunity.
DMARC והטעויותעל טעויות נפוצות בהגדרות DMARC, למה זה חשוב וכיצד להימנע מהן.אחת מהדרישות המנדטוריות של ספקיות האימייל הגדולות שהוצגו ב2024 היתה להגדיר רשומת DMARC.התחלתי פרויקט מחקר עצמאי שיבדוק את רוב הדומיינים הרשומים על ידי עסקים בישראל. לפי איגוד האינטרנט בישראל ישנם כ-287 אלף אתרים בסיומת IL. בפרויקט אבחן הביטים שונים הקשורים בדיוור. בין השאר אתמקד ברשומות DMARC בדומיינים הללו. כשלב ראשון בפרויקט לקחתי את 1000 האתרים הפופולריים בישראל - לא כולם ישראלים - ובדקתי את מצב רשומת DMARC שלהם. הממצאים מפתיעים. בהמשך הפודקאסט אציג אותם...אבל קודם כל בואו נדבר על הטעויות הנפוצות הקשורות ב-DMARC ואולי עוד קודם לכן – מה זה בכלל DMARC. ---CRM.BUZZ הוא בלוג ופודקאסט בעברית העוסקים באימייל מרקטינג, עבירוּת אימיילים ושיווק.יוצר הפודקאסט והבלוג הוא סלע יפה (Sella Yoffe), מומחה בינ"ל לעבירוּת אימיילים ושיווק באימייל, מסייע למדוורים גלובליים, סטרטאפים, סוכנויות אימייל ומערכות דיוור (ESPs) עם מסירות אימייל, אימות אימייל (SPF, DKIM, DMARC, BIMI), ואסטרטגיית אימייל. קישור אל הבלוג
בחודש יולי 2025 גוגל התחילה בהשקה של פיצ'ר חדש בשם "Manage Subscriptions" בתוך Gmail, המיועד לעזור למשתמשים להשתלט על עומס הודעות הדיוור שהם מקבלים ולנהל את הניוזלטרים והדיוורים השיווקיים שהם רשומים אליהם במקום מרוכז אחד. כך Gmail כותבת: קל מאוד להרגיש מוצף מכמות עצומה של אימיילים מרשימות תפוצה שמעמיסים על תיבת האימייל שלכם: התראות על מבצעים יומיים שנראות כמו ספאם, ניוזלטרים שבועיים מבלוגים שכבר אינך קורא, ואימיילים שיווקיים מחנויות שלא קנית בהן כבר שנים. כל אלה יכולים להצטבר במהירות. עם הפיצ'ר החדש של Gmail בשם "ניהול מנויים" תוכלו לצפות ולנהל את האימיילים שהנכם מנויים עליהם במקום אחד, ולבטל הרשמה בקלות מכל מה שכבר לא רלוונטי עבורכם.עוד היא כותבת- Gmail תמיד פעלה כדי לשמור על תיבת אימייל נקייה מאימיילים לא רצויים. הדרישות שלנו מממדוורים (הוצגו ב-2024) וכלים שמערכות דיוור הוסיפו כמו "ביטול הרשמה בקליק אחד" (easy unsubscription) המעניקים שליטה גדולה עוד יותר ולבחור אילו אימיילים אתם רוצים להמשיך לקבל, ולהפסיק לקבל את האימיילים שאתם לא רוצים יותר לקבל. לצד המאמצים שלנו לשמור על תיבות אימייל בטוחות, אנו גם שמים דגש על מתן שליטה רחבה יותר למשתמשים על ההודעות שהם רוצים לקבל. כיום Gmail חוסם יותר מ-99.9% מהספאם, ניסיונות פישינג ונוזקות, ולאחרונה השקנו מנגנוני הגנה חדשים מבוססי בינה מלאכותית שהפחיתו ב-35% את כמות האימיילים שכוללים ניסיונות הונאה (פישינג).מהו מרכז המנויים החדש? האזינו לפרק.---CRM.BUZZ הוא בלוג ופודקאסט בעברית העוסקים באימייל מרקטינג, עבירוּת אימיילים ושיווק.יוצר הפודקאסט והבלוג הוא סלע יפה (Sella Yoffe), מומחה בינ"ל לעבירוּת אימיילים ושיווק באימייל, מסייע למדוורים גלובליים, סטרטאפים, סוכנויות אימייל ומערכות דיוור (ESPs) עם מסירות אימייל, אימות אימייל (SPF, DKIM, DMARC, BIMI), ואסטרטגיית אימייל. קישור אל הבלוג
Send us a textIn this candid and energizing episode, Joey Pinz sits down with Tom Harshbarger, cybersecurity leader at Red Sift, who shares how everything from Metallica concerts to chronic illness in his family has shaped his approach to leadership, health, and vendor strategy.Recorded live at Pax8 Beyond 2025, Tom reflects on cycling for mental clarity, building trust with MSPs, and the mission behind Red Sift — a company founded by the creators of Shazam to deliver misconfiguration remediation at scale. Their platform empowers MSPs to secure the attack surface while freeing up senior engineers — all while staying invisible to the end customer.Tom also discusses his own health and mindset journey, navigating caregiving for loved ones with POTS, and the mental reprogramming it took to prioritize self-care, sustainable work habits, and meaningful partnerships.From stories of seismic concerts to seismic shifts in MSP cybersecurity, this episode is both vulnerable and visionary — a must-listen for anyone working to scale without burning out.
נתקלתי לאחרונה באתר כלשהו שהעתיק תוכן מהבלוג שלי. זו אמנם לא העתקה מילה במילה אבל ברור לי שהמקור הוא האתר שלי. זה מרגיז אבל זה בדיוק מה שקורה כעת באינטרנט מודל 2025 ומי שמעתיק הוא לא איזה אתר קיקיוני שברוב חוצפתו לוקח תוכן שירקתי דם כדי ליצור ומפרסם אותו בניסוח שונה ללא מתן קרדיט וללא קבלת רשות וללא מתן כל תמורה. מי שעושים את זה כיום מהמקפצה אלו זחלני ה-AI של גוגל והחברות עם עוזרי ה-AI.לא מזמן כתבתי מאמר נרחב שמתאר את הדרמה הגדולה סביב ההכרזה האחרונה של גוגל (05/25) שמשמעותה היא שגוגל מחסלת את האינטרנט כפי שהכרנו אותו. שההכרזה האחרונה של גוגל מבהירה את האמת המרה: גוגל בונה חומה בֶּינה לבין אתרי קניות ואתרי תוכן והגולשים יוכלו לקבל את כל התשובות ולהשלים את כל הפעולות בלי לצאת מהגן הסגור של גוגל. בצורה דומה עוזרי AI למיניהם עושים את אותו דבר. לוקחים תוכן מאתרים, חלקו מוגן בזכויות יוצרים, מאמנים את המודלים שלהם ואח"כ נותנים תשובות על בסיסו מבלי שיוצרי התוכן המקורי נהנים מכך.התופעה הזו של "אפס הקלקות" מגוגל וממנועי AI אחרים היא בעיה גדולה. ישנם לדעתי 3 פתרונות לבעיה הזו.---CRM.BUZZ הוא בלוג ופודקאסט בעברית העוסקים באימייל מרקטינג, עבירוּת אימיילים ושיווק.יוצר הפודקאסט והבלוג הוא סלע יפה (Sella Yoffe), מומחה בינ"ל לעבירוּת אימיילים ושיווק באימייל, מסייע למדוורים גלובליים, סטרטאפים, סוכנויות אימייל ומערכות דיוור (ESPs) עם מסירות אימייל, אימות אימייל (SPF, DKIM, DMARC, BIMI), ואסטרטגיית אימייל. קישור אל הבלוג
ניתן להתייחס לנושא ניקיון רשימות התפוצה (list hygiene) מזוויות שונות ולעיתים אפילו קיים בלבול באופן השימוש במונח הזה.זווית ראיה אחת של ניקוי רשימות תפוצה עוסקת בעיקר בניקיון הטכני של רשימות התפוצה, הזווית השנייה בנמענים שלא נראים פעילים במערכת הדיוור, איך לזהות אותם ומה לעשות איתם? למחוק, לא לדוור אליהם או אולי לנסות להעיר אותם בדרכים שונות.---CRM.BUZZ הוא בלוג ופודקאסט בעברית העוסקים באימייל מרקטינג, עבירוּת אימיילים ושיווק.יוצר הפודקאסט והבלוג הוא סלע יפה (Sella Yoffe), מומחה בינ"ל לעבירוּת אימיילים ושיווק באימייל, מסייע למדוורים גלובליים, סטרטאפים, סוכנויות אימייל ומערכות דיוור (ESPs) עם מסירות אימייל, אימות אימייל (SPF, DKIM, DMARC, BIMI), ואסטרטגיית אימייל. קישור אל הבלוג
Email marketing still converts better than most digital channels, yet many businesses overlook this powerful tool because of misconceptions about its effectiveness or complexity. • Email is definitely not dead – it's been generating millions in revenue for over a decade• Design doesn't matter in email – focus on consistency and authenticity instead• The sweet spot for email frequency is 2-4 times per month• DNS records (SPF, DKIM, DMARC) are now essential for good deliverability• Different platforms serve different needs – MailChimp for beginners, Active Campaign for automation, GoHighLevel for all-in-one• Lead magnets should provide genuine value worth at least a couple hundred dollars• Perfectionism kills results – "good enough to get it out there" is a winning philosophy• Structure emails with curiosity in subject lines, a hook at the beginning, storytelling in the middle, and a clear CTA• The 7-11-4 principle: prospects need 7 hours of content, seeing your message 11 times, across 4 channels• Being "unapologetically authentic" builds stronger connections than polished marketing-----Guest Information: https://www.linkedin.com/in/schwedelson/https://subjectline.com/https://guruconference.com/https://outcomemedia.com/------More from EWR and Matt:Leave a Review if it was content you enjoyed: https://g.page/r/CccGEk37CLosEB0/reviewFree SEO Consultation: https://www.ewrdigital.com/discovery-callOne-on-One Consulting: https://www.ewrdigital.com/digital-strategy-consulting/private-consulting-session—The Unknown Secrets of Internet Marketing podcast is a podcast hosted by Internet marketing expert Matthew Bertram. The show provides insights and advice on digital marketing, SEO, and online business. Topics covered include keyword research, content optimization, link building, local SEO, and more. The show also features interviews with industry leaders and experts who share their experiences and tips. Additionally, Matt shares his own experiences and strategies, as well as his own successes and failures, to help listeners learn from his experiences and apply the same principles to their businesses. The show is designed to help entrepreneurs and business owners become successful online and get the most out of their digital marketing efforts.Find more great episodes here: https://www.internetmarketingsecretspodcast.com/ https://seo-podcast-the-unknown-secrets-of-internet-marketing.buzzsprout.comFollow us on:Facebook: @bestseopodcastInstagram: @thebestseopodcastTiktok: @bestseopodcastLinkedIn: @bestseopodcastPowered by: ewrdigital.comHosts: Matt Bertram Disclaimer: For Educational and Entertainment purposes only.Support the show
You think you know email deliverability? Think again. Jay Schwedelson teams up with Guy Hanson and Danielle Gallant for a rapid-fire, no-nonsense "kitchen sink" episode of Spamageddon, where they serve up 10 essential (and sometimes controversial) deliverability tips. From wild British vs. American word wars to why the Gmail Promotions tab is scarier than you think, this one's packed with sharp takes and real talk on surviving the modern inbox.Best Moments:(01:10) British vs. American word chaos—table this or talk about it now?(05:08) DMARC's “none” policy is a fraudster's dream, and it's about to become a problem for everyone.(06:23) Spam complaint rates—don't settle for the “generous” 0.3%, aim for 0.1% or lower.(07:30) Double opt-in: future mandate or marketer's nightmare?(09:41) Data hygiene starts at signup—think address validation, Captcha, and keeping bots out.(11:10) Delete those dormant subscribers or risk deliverability doom.(12:00) Use feedback loops to permanently ditch serial complainers.(13:19) Gmail is using AI to auto-insert promo annotations—take control before weird images show up.(15:12) AI summaries are coming for your emails—start thinking SEO and alt text, now.(16:40) Don't blast at the top of the hour if you want your emails to actually land.(17:39) Accessibility issues are everywhere—don't let your emails be part of the 90% problem.(18:24) New AI laws mean you need to update privacy and rethink your risk, pronto.(19:16) BIMI and logo verification—don't be the email sender with no face in the inbox.Guy and Danielle invite you to check out the Email After Hours podcast and explore deliverability tools and guidance from Validity.=================================================Check out our 100% FREE + VIRTUAL EVENTS! ->Guru Conference - The World's Largest Virtual EMAIL MARKETING Conference - Nov 6-7!Register here: www.GuruConference.com=================================================Check out Jay's YOUTUBE Channel: https://www.youtube.com/@schwedelsonCheck out Jay's TIKTOK: https://www.tiktok.com/@schwedelsonCheck Out Jay's INSTAGRAM: https://www.instagram.com/jayschwedelson/=================================================AND don't miss out on this awesome FREE upcoming Quick Hit!Marigold: Should I Switch Email Platforms? 5 Truths & Myths!6/24 11am – 12pm ET.Register HERE: https://www.linkedin.com/events/7325947932031991808/comments/=================================================MASSIVE thank you to our Sponsor, Marigold!!Email chaos across campuses, branches, or chapters? Emma by Marigold lets HQ keep control while local teams send on-brand, on-time messages with ease.Podcast & GURU listeners: 50 % off your first 3 months with an annual plan (new customers, 10 k-contact minimum, terms apply).Claim your offer now at jayschwedelson.com/emma
Small and medium-sized businesses (SMBs) are exhibiting a dangerous overconfidence in their cybersecurity readiness, with a significant gap between their perceived capabilities and actual security measures in place. A recent report reveals that while 71% of SMBs feel confident in managing major cybersecurity incidents, only 22% have an advanced cybersecurity posture. This disconnect presents a critical opportunity for IT service providers to step in with strategic, outcome-focused solutions that emphasize not just tools, but comprehensive cybersecurity strategies.The landscape of cybersecurity is evolving, with SMBs increasingly recognizing the importance of cyber resiliency. Reports indicate that 68% of small businesses and 89% of mid-market firms understand the need for quick recovery from incidents, yet many still lack formal security protocols. As the market for cybersecurity solutions is projected to grow significantly, reaching an estimated $70 billion by 2034, the demand for effective strategies is more pressing than ever. The rise of cloud-based security solutions and zero-trust architecture is indicative of this shift.Regulatory changes are also impacting the cybersecurity landscape, as the SEC withdraws proposed regulations that would have required investment firms to establish written cybersecurity policies. This deregulation creates a trust vacuum that IT providers can fill by offering managed compliance and risk mitigation services. The convergence of regulatory retreat and escalating cyber threats underscores the need for proactive security measures, as the responsibility for cybersecurity increasingly shifts to the market.Amid these challenges, advancements in email security, particularly through DMARC adoption, show promise in combating phishing attacks. However, the rapid proliferation of generative AI applications is creating new vulnerabilities, complicating the security landscape. IT service providers are urged to capitalize on foundational security measures while also addressing the emerging risks associated with AI. The evolving cybersecurity environment presents both challenges and opportunities for providers who can adapt and innovate in response to these shifting dynamics. Four things to know today 00:00 SMBs Overconfident, Underprepared: Cybersecurity Misalignment Fuels $70B Market Surge05:00 SEC Pullback Leaves Cyber Gaps as Ransomware and Zero Trust Shape 2025 Risk Landscape08:50 From DMARC to Shadow AI: Why Cybersecurity Now Requires Dual-Front Defense11:45 Bifurcation in IT Services: MSP-Centric Tools and Vertical Platforms Signal Strategic Divide This is the Business of Tech. Supported by: https://cometbackup.com/?utm_source=mspradio&utm_medium=podcast&utm_campaign=sponsorship All our Sponsors: https://businessof.tech/sponsors/ Do you want the show on your podcast app or the written versions of the stories? Subscribe to the Business of Tech: https://www.businessof.tech/subscribe/Looking for a link from the stories? The entire script of the show, with links to articles, are posted in each story on https://www.businessof.tech/ Support the show on Patreon: https://patreon.com/mspradio/ Want to be a guest on Business of Tech: Daily 10-Minute IT Services Insights? Send Dave Sobel a message on PodMatch, here: https://www.podmatch.com/hostdetailpreview/businessoftech Want our stuff? Cool Merch? Wear “Why Do We Care?” - Visit https://mspradio.myspreadshop.com Follow us on:LinkedIn: https://www.linkedin.com/company/28908079/YouTube: https://youtube.com/mspradio/Facebook: https://www.facebook.com/mspradionews/Instagram: https://www.instagram.com/mspradio/TikTok: https://www.tiktok.com/@businessoftechBluesky: https://bsky.app/profile/businessof.tech
警察庁はこの「意識しなくても被害に遭わない環境」を作る技術の一つとして DMARC に着目し、関係省庁とともに導入促進に取り組んでいる。
Copy That Converts - Entrepreneurs, Copywriting, Launch, Email Marketing, Conversion
It's the 100th episode of Copy That Converts and I'm celebrating by answering YOUR most pressing questions about email marketing and copywriting.
האשם הוא תמיד ה-DNSמהו DNS ולמה הוא חשוב כל כך לפעילות אימייל מרקטינג?מערכת שמות המתחם, ראשי תיבות Domain Name System (או DNS) היא מרכיב קריטי לתפקוד כל תשתית אינטרנט. לעיתים קרובות אולי בגלל היותו מרכיב טכני, ה-DNS ואופן ניהולו אינם מקבלים את תשומת הלב הראויה מצד מדוורים או בעלי אתרים.במסגרת תהליכי ליווי לקוחות אני נתקל בהמון בעיות סביב ה-DNS שבהקשר של אימייל מרקטינג ותפעול תקין של אימייל בכלל, ל- DNS תפקיד קריטי. הוא שומר בתוכו את כל ההגדרות הדרושות לזיהוי, ניתוב, אימות ואבטחת תעבורת האימיילים. כאשר אימייל נשלח, שרתי הדואר בצד המקבל פונים אל ה-DNS של הדומיין השולח ובודקים רשומות SPF, DKIM ו DMARC -כדי לבצע בדיקות ולהחליט אם לקבל את ההודעה, לסווג אותה כספאם, לדחות אותה בהתאם למדיניות DMARC ופרמטרים אחרים.בכל אימייל שנשלח ממערכת הדיוור או כל מערכת מדוורת בשם הדומיין, שרתי הדואר של הצד המקבל יבצעו פניות אל ה-DNS של הדומיין ויבדקו את הרשומות לאימות הדומיין SPF, DKIM, DMARC.
Gerasim Hovhannisyan, CEO of EasyDMARC, discusses the complexities and challenges of implementing DMARC (Domain-based Message Authentication, Reporting & Conformance) in the cybersecurity landscape. He shares his personal journey, which began after experiencing a significant financial loss due to an email phishing attack. This incident prompted him to explore email authentication protocols, leading to the creation of EasyDMARC, a platform designed to simplify the deployment of these protocols for organizations, particularly managed service providers (MSPs) and small businesses.Hovhannisyan highlights the common friction points faced by organizations when deploying DMARC solutions, particularly the fear of misconfiguration that could lead to legitimate emails being rejected. He notes that many organizations struggle with visibility and control over their email sending sources, which complicates the implementation process. EasyDMARC aims to alleviate these concerns by providing automation and clear visualizations, enabling MSPs to deploy email authentication more effectively and with greater confidence.The conversation also touches on the importance of email security for all businesses, regardless of size. Hovhannisyan argues that even micro businesses need to prioritize email authentication to protect their reputation and maintain secure communication. He emphasizes that while the effort to implement DMARC can be significant, leveraging the right vendor can streamline the process and make it manageable for smaller organizations.Finally, Hovhannisyan discusses the role of major cloud providers like Google, Microsoft, and Yahoo in the email security ecosystem. He believes that their enforcement of DMARC standards is crucial for creating a safer email environment. As regulations evolve and more organizations adopt email authentication practices, Hovhannisyan is optimistic about the future of email security and the ongoing efforts to simplify the implementation process for all businesses. All our Sponsors: https://businessof.tech/sponsors/ Do you want the show on your podcast app or the written versions of the stories? Subscribe to the Business of Tech: https://www.businessof.tech/subscribe/Looking for a link from the stories? The entire script of the show, with links to articles, are posted in each story on https://www.businessof.tech/ Support the show on Patreon: https://patreon.com/mspradio/ Want to be a guest on Business of Tech: Daily 10-Minute IT Services Insights? Send Dave Sobel a message on PodMatch, here: https://www.podmatch.com/hostdetailpreview/businessoftech Want our stuff? Cool Merch? Wear “Why Do We Care?” - Visit https://mspradio.myspreadshop.com Follow us on:LinkedIn: https://www.linkedin.com/company/28908079/YouTube: https://youtube.com/mspradio/Facebook: https://www.facebook.com/mspradionews/Instagram: https://www.instagram.com/mspradio/TikTok: https://www.tiktok.com/@businessoftechBluesky: https://bsky.app/profile/businessof.tech
Why does email marketing often feel like shouting into the void?
SANS Internet Stormcenter Daily Network/Cyber Security and Information Security Stormcast
xorsearch.py: Ad Hoc YARA Rules Adhoc YARA rules allow for easy searches using command line arguments without having to write complete YARA rules for simple use cases like string and regex searches https://isc.sans.edu/diary/xorsearch.py%3A%20%22Ad%20Hoc%20YARA%20Rules%22/31856 Google Spoofed via DKIM Replay Attack DKIM replay attacks are a known issue where the attacker re-uses a prior DKIM signature. This will work as long as the headers signed by the signature are unchanged. Recently, this attack has been successful against Google. https://easydmarc.com/blog/google-spoofed-via-dkim-replay-attack-a-technical-breakdown/ SSL.com E-Mail Validation Bug SSL.com did not properly verify which domain a particular email address is authorized to receive certificates for. This could have been exploited against webmail providers. https://bugzilla.mozilla.org/show_bug.cgi?id=1961406
Launching a course? Don't let legal & technical details derail your success! This episode covers GDPR compliance, email deliverability, and accessibility – essential steps to protect your course and your students. Learn how to avoid headaches and build a sustainable, ethical business.Learn how to:Implement GDPR and ethical email etiquette: Obtain consent, provide opt-outs, and be transparent.Improve email deliverability: Authenticate emails, maintain clean lists, and avoid spam triggers.Ensure course accessibility: Provide captions, use proper color contrast, and design for keyboard navigation.Weekly Action Item:Choose one of the following to implement this week:Review your email opt-in process and privacy policy.Check your email authentication settings (DKIM, SPF, DMARC).Get started on Accessibility with the Accessibility Starter Kit at https://digitalcourse.pro/accessibility Show Resources: Check out all podcast episodes and full transcripts (www.digitalcoursecreatorguide.com/podcast)Follow me on Facebook (facebook.com/digitalcoursecreatorguide) and on Instagram (instagram.com/digitalcoursecreatorguide) for daily tips and ideasWork With Dr. Moira:Join Office Hours for support and mentoring to get your digital course done. (https://digitalcourse.pro/Office-Hours)Make sure that your content is accessible with The Accessibility Starter Kit for Online Creators micro course. (https://digitalcourse.pro/accessibility)Join me for our monthly workshop. April is all about creating your digital course outline in 90 minutes. (https://digitalcourse.pro/monthly-workshop)
Scoping the Scene: Why Site Surveys Matter in POTS Replacement, TELCLOUD POTS & Shots Podcast, Jacoby explains, that buildings lose electricity, emergency systems like elevators and fire alarms still rely on that dial tone to operate POTS & Shots Podcast Series “If you skip the site survey, you might be skipping success,” says Jake Jacoby, TELCLOUD. In the latest episode of POTS and Shots, Doug Green, publisher of Technology Reseller News, reconnects with Jake Jacoby of TELCLOUD to tackle one of the most overlooked—but critical—steps in POTS replacement: the site survey. “POTS lines traditionally delivered power,” Jacoby explains, noting that when buildings lose electricity, emergency systems like elevators and fire alarms still rely on that dial tone to operate. With modern replacements depending on cellular backhaul and battery backups, understanding a site's power setup and signal availability is essential before installation begins. Jacoby walks us through the must-check boxes:✔ Where is the DMARC?✔ Is there enough space and a backboard for mounting?✔ Is power always available—and not tied to something as simple as a light switch?✔ Is there cellular signal in that basement telco closet? These aren't small details. “This isn't a home phone. These are life safety lines,” Jacoby stresses. TELCLOUD ensures reliable implementation by offering trained reseller programs and certified third-party installers. As always, after the tech talk, the POTS and Shots series adds flavor with a tequila—or in this case—mezcal spotlight. Jacoby introduces Cuatrocientos Conejos, a smoky spirit rooted in Aztec mythology. “Every tequila is a mezcal, but not every mezcal is a tequila,” he says, explaining the nuanced difference based on agave type and production method. Stay tuned: the next episode will dive into future-proofing telecom and ensuring long-term sustainability of POTS line replacements. Learn more: www.telcloud.com
In this episode, Tyler and Brad discuss DMARC and how the latest version of the PCI framework requires phishing protection. You'll also learn about DMARC, DKIM, and SPF and how to elevate them to help protect your organization from attacks like Business Email Compromise (BEC).Blog: https://offsec.blog/Youtube: https://www.youtube.com/@cyberthreatpovTwitter: https://x.com/cyberthreatpov Spencer's Twitter: https://x.com/techspenceSpencer's LinkedIn: https://linkedin.com/in/SpencerAlessi Work with Us: https://securit360.com
Friend of the podcast and friend of Mailgun, Brian Westnedge of Red Sift stopped by to talk about how Mailgun and Red Sift want to make DMARC adoption easy as possible for Mailgun users and why DMARC authentication is needed in your email strategy. Peter Trinder from Mailgun joined us as well to let us know what went into this process and what to expect. Email's Not Dead is a podcast about how we communicate with each other and the broader world through modern technologies. Email isn't dead, but it could be if we don't change how we think about it. Hosts Jonathan Torres and Eric Trinidad dive into the email underworld and come back out with a distinctive look at the way developers and marketers send email.
We discuss why simply using platforms like HubSpot or MailChimp isn't enough anymore, the importance of authentication protocols like DKIM, SPF, and DMARC, and how Google and Yahoo's new rules impact email marketing. Plus, MV shares insights on why email is the glue for your business, the importance of testing and auditing your emails, and how to optimize automations without losing authenticity.If your emails aren't getting the engagement they should, this episode is a must-listen!What next?Want to improve your email deliverability and get out of the spam folder?
E-mail marketing has changed, and so must your approach if you want to reach your audience in 2025. I chatted with MV Braverman, founder of Inbox Welcome, to talk about e-mail deliverability—a topic often overlooked but absolutely essential. While we all obsess over catchy subject lines and beautiful designs, none of that matters if your e-mails never make it to the inbox. MV shared practical advice to help you understand deliverability and improve your results. Here are a few of the key takeaways: Authentication is Non-Negotiable To combat spam, providers like Google and Yahoo now require senders to authenticate their e-mails. Tools like SPF, DKIM, and DMARC ensure your e-mails are verified and trustworthy. But here's the catch: while platforms like MailChimp can help you authenticate campaign emails, that's only part of the puzzle. MV recommends a comprehensive setup covering all your email streams—like invoices, auto-responders, and proposals. Reporting Matters DMARC doesn't just verify your emails—it also provides detailed reports about where your emails are landing (inbox vs. spam) and how they're being perceived by providers like Microsoft. These insights are invaluable for spotting problems early. Focus on the Reader's Experience Your emails should be accessible, mobile-friendly, and readable in both light and dark modes. MV pointed out that ignoring dark mode—a preference for up to one-third of email users—can make your emails nearly impossible to read. Don't Rely Solely on Images While image-only emails may look appealing, they're a disaster for accessibility. Many readers (including me!) block images by default, and with AI tools summarizing content, text is more important than ever. Always include descriptive, clear text in your emails. What You Can Do: Review your email authentication settings across all platforms, not just your email marketing tool, to ensure full coverage. Download MV's DMARC guide to learn how to set up reporting and spot deliverability issues before they become major problems. Email marketing isn't just about what you say—it's about making sure people actually receive it.
In this episode, we delve into the relevance and implementation of DMARC (Domain-based Message Authentication, Reporting & Conformance) in today's email security landscape. The discussion covers how major organizations like Google, Yahoo, and Microsoft have started enforcing DMARC policies to combat spam, especially for high-volume email senders. We also explore the importance of continuous monitoring and the potential pitfalls associated with implementing DMARC improperly, including real-world examples highlighting the consequences. Join us to learn about the nuances of DMARC, from setting it up to ensuring seamless communication across departments, and why it is crucial for your organization's email security strategy.Resources: https://easydmarc.com/blog/dmarc-pci-dss/ 00:00 Introduction to PCI and Podcast Focus01:52 The Rise of DMARC in 202404:06 DMARC Implementation Challenges09:17 Importance of Continuous Monitoring12:38 Vendor Changes and Their Impact18:30 Implementing DMARC: Tips and Pitfalls31:59 Conclusion and Final Thoughts
In this Thursday episode of the SMB Community Podcast, host James Kernan talks with Mike Anderson, Director of Global Channels for EZDMark. They discuss the importance of DMARC (Domain-based Message Authentication, Reporting & Conformance) in improving email deliverability and protecting domains from spoofing. Mike shares his journey from the car business to technology, and explains how EZDMark's user-friendly analytics platform aids MSPs in managing DMARC concerns and monetizing these services. They highlight the platform's risk assessment tool, which allows MSPs to generate quick, customized risk assessments to attract potential clients. The episode concludes with details on special promotions and the simplicity of onboarding with EZDMark. Chapter Markers: 00:00 Introduction to SMB Community Podcast 00:54 Meet Mike Anderson from EZDMark 01:58 Mike Anderson's Journey into Technology 03:08 Understanding EZDMark and DMARC 04:33 EZDMark's Unique Features and Benefits 06:34 The Power of EZDMark's Assessment Tool 10:31 Onboarding and Special Promotions 14:06 Final Thoughts and Conclusion New Book Release: I'm proud to announce the release of my new book, The Anthology of Cybersecurity Experts! This collection brings together 15 of the nation's top minds in cybersecurity, sharing real-world solutions to combat today's most pressing threats. Whether you're an MSP, IT leader, or simply passionate about protecting your data, this book is packed with expert advice to help you stay secure and ahead of the curve. Available now on Amazon! https://a.co/d/f2NKASI Sponsor Memo: Since 2006, Kernan Consulting has been through over 30 transactions in mergers & acquisitions - and just this past year, we have been involved in six (6). If you are interested in either buying, selling, or valuation information, please reach out. There is alot of activity and you can be a part of it. For more information, reach out at kernanconsulting.com
Welcome to this replay on The Cyber Threat Perspective! In this episode, Brad and Spencer dive into the mechanics and recent developments of email spoofing, shedding light on how attackers are bypassing advanced email protections.In this episode, we cover:The fundamentals of email spoofing and why it's a significant threat.Insight into the recent echo spoofing campaign exploiting Proofpoint's misconfiguration.The role of SPF, DKIM, and DMARC in combating email spoofing.How threat actors are using Microsoft 365 to bypass email protections.Mitigation strategies and the latest updates from Proofpoint and Microsoft to address these vulnerabilities.Blog: https://offsec.blog/Youtube: https://www.youtube.com/@cyberthreatpovTwitter: https://twitter.com/cyberthreatpovWork with Us: https://securit360.com
Intel's CEO departs but replacing him won't magically solve its serious problems, Zipcar wasn't prepared for an outage and handled it really badly, moving to an email provider that supports DMARC, and picking a NAS distribution. Plugs Support us on patreon and get an ad-free RSS feed with early episodes sometimes ZFS Ask Me […]
Intel's CEO departs but replacing him won't magically solve its serious problems, Zipcar wasn't prepared for an outage and handled it really badly, moving to an email provider that supports DMARC, and picking a NAS distribution. Plugs Support us on patreon and get an ad-free RSS feed with early episodes sometimes ZFS Ask Me... Read More
What should you look for when choosing an email newsletter tool? What if you are considering moving? This episode shares some key features you want to review and evaluate as you put together your company's most valuable asset - your email list! Get the full links and show notes at https://CourseCreatorsHQ.com/218. LINKS MENTIONED Note: Some of these are affiliate links, and I earn a small commission when you use them. Thank you!Don't miss this incredible Kajabi Special EXTENDED only through November 15, 2024! You get 50% off for a YEAR, plus 10 weeks of live coaching with me, plus $2K of courses: 24 Hour Course Creator which I've never given away! plus Sales Page Secrets, Joint Venture Secrets and Effortless Email, and my step-by-step, click-by-click Kajabi Kickstart course. I've never seen or done a deal this good to get you set up for 2025! Be sure to pick your plan (I recommend Basic with 3 products or Growth with 15): https://CourseCreatorsHQ.com/Kajabi50off Or if you are visiting after the deadline - use this link to get a 30 Day Free Trial! https://coursecreatorshq.com/kajabi-signup Convert Kit / Kithttps://CourseCreatorsHQ.com/ConvertKit LeadPageshttps://LeadpagesOnline.com RELATED EPISODES E187: Funnels, Email & Better Messaging… Oh My! E176: 7 Key Reasons Email Marketing Isn't Working to Sell Your Online Course E090: 7 Big Email Mistakes Online Course Creators Make E052: Email Marketing – The 6 Cs for Online Course Creators E038: Email Marketing Secrets for Course Creators KEY TAKEAWAYS FOR ONLINE COURSE CREATORS Two types of email programs:Primary function is email: ConvertKit (now Kit), ActiveCampaign, Aweber, DripAn All-in-one-Tool that has email built in – plus runs your entire online business11 Things to Consider:Consider whether you will use an all-in-one-tool.Landing pages to create a funnel.Automation functionality: simple automation is to send a welcome message or complex.Ease of email creation. Automatic integration with your other tools. Check costs as your email size rises.Older tools have bolt-ons. Moving your list: do you have to re-confirm the addresses?Double optin functionality.Email deliverability – complicated process and gets even more complex as your list size grows (SPF, DKIM, DMARC are technical settings).Watch your numbers – especially click through rates. COME VISIT JULIE! Get on the email list AND get the FREE Ultimate Course Creators Planner - https://coursecreatorshq.com/2024PlannerPodcast Get this free course - Is My Course Idea Any Good? here -https://www.coursecreatorshq.com/ideaGoodPods Let's talk about this episode on GoodPods – https://CourseCreatorsHQ.com/goodpods (mobile only, download the app first) Website https://www.CourseCreatorsHQ.comYouTube https://coursecreatorshq.com/YouTubePodcast Facebook https://www.facebook.com/CourseCreatorsHQInstagram https://www.instagram.com/CourseCreatorsHQTwitter https://www.Twitter.com/CourseHQThreadshttps://www.threads.net/@coursecreatorshq Disclaimers https://coursecreatorshq.com/disclaimers/
In this episode of Mastering eCommerce Marketing, host Eitan Koter welcomes Nikita Vakhrushev, the Founder/CEO of ASPEKT, a digital agency specializing in email marketing for DTC brands. Nikita brings a wealth of experience in helping brands build stronger connections with their customers through targeted email and SMS campaigns.Eitan and Nikita get into some essential topics around email marketing today, covering how to get emails delivered, keep audiences engaged, and make email a dependable revenue driver. Nikita shares his approach to deliverability, walking through what it takes to get emails into inboxes — from SPF records and DMARC setup to domain warmups. They also talk about the challenge of keeping email lists active year-round to make sure brands are top of mind when key shopping times like Black Friday roll around.Nikita also explains his approach to finding the right balance between promotional and value-driven content in email campaigns, plus the importance of A/B testing to see what resonates with audiences. He shares how SMS can complement email marketing, especially for products with lower price points where a quick, simple message drives conversions.For brands looking to grow their email list, Nikita suggests a mix of strategies, from website pop-ups to lead generation through social channels. Finally, Nikita talks about how AI tools like ChatGPT help his team generate fresh ideas and create content that engages customers effectively.Whether you're a seasoned marketer or just looking to get more out of email, Nikita's practical approach to email and SMS offers some solid takeaways for today's fast-paced eCommerce world.Website: https://www.vimmi.net Email us: info@vimmi.net Podcast website: https://vimmi.net/mastering-ecommerce-marketing/ Talk to us on Social:LinkedIn Eitan Koter: https://www.linkedin.com/in/eitankoter/ LinkedIn Vimmi: https://il.linkedin.com/company/vimmi YouTube: https://www.youtube.com/@VimmiCommunications Guest: Nikita Vakhrushev, the Founder/CEO of ASPEKTLinkedIn:
This episode delves into the ongoing remote work debate, particularly focusing on Amazon's recent mandate requiring employees to return to the office five days a week starting in 2025. This decision has sparked significant backlash, with a Newsweek study indicating that a majority of remote workers would consider resigning if forced back into the office. The dissatisfaction is echoed in a poll revealing that 91% of Amazon employees are unhappy with the policy, and many express concerns about its impact on work-life balance and flexibility.The episode also highlights the evolving landscape of managed service providers (MSPs) and help desk operations, showcasing new technological advancements. Moovilla's integration with Autotask PSA aims to enhance project management for MSPs, while PIA introduces features to streamline ticket handling. Additionally, Cohesity's new visual data exploration capability addresses the challenges of unstructured data, and Cisco unveils AI-powered innovations for its Webex Contact Center, promising to improve customer satisfaction and operational efficiency.Host Dave Sobel further discusses the surge in email security adoption, particularly the implementation of DMARC (Domain-Based Message Authentication Reporting and Conformance). Despite nearly 6.8 million domains utilizing email sender authentication, many businesses remain hesitant to enforce stricter policies. The episode raises concerns about the effectiveness of email authentication and the slow pace of adoption, particularly in industries like non-profits, where DMARC usage is notably low.Finally, the episode touches on the competitive dynamics in the AI market, particularly the strained partnership between OpenAI and Microsoft amid financial pressures. Sobel reflects on Intel's struggles to keep pace with the booming AI sector, contrasting its market value with that of NVIDIA. The discussion concludes with a sobering look at the challenges faced by law enforcement in combating cybercrime, emphasizing the growing sophistication of cyber gangs and the need for a reevaluation of security strategies in the tech industry. Four things to know today 00:00 Remote Work Debate Intensifies: Amazon Faces Pushback on Office Mandate, While Surveys Highlight Hybrid Work's Benefits03:49 AI Transformations in Helpdesk and MSP Operations: Cisco, Fixify, and Cohesity Roll Out New Capabilities for Smarter Workflows07:12 Email Security Adoption Surges as DMARC Implementation Increases, Yet Full Enforcement Remains Distant08:56 Will AI Deliver Financial Returns? Examining Profit Challenges in Big Tech's AI Race Supported by: https://mspradio.com/engage/ All our Sponsors: https://businessof.tech/sponsors/ Do you want the show on your podcast app or the written versions of the stories? Subscribe to the Business of Tech: https://www.businessof.tech/subscribe/Looking for a link from the stories? The entire script of the show, with links to articles, are posted in each story on https://www.businessof.tech/ Support the show on Patreon: https://patreon.com/mspradio/ Want to be a guest on Business of Tech: Daily 10-Minute IT Services Insights? Send Dave Sobel a message on PodMatch, here: https://www.podmatch.com/hostdetailpreview/businessoftech Want our stuff? Cool Merch? Wear “Why Do We Care?” - Visit https://mspradio.myspreadshop.com Follow us on:LinkedIn: https://www.linkedin.com/company/28908079/YouTube: https://youtube.com/mspradio/Facebook: https://www.facebook.com/mspradionews/Instagram: https://www.instagram.com/mspradio/TikTok: https://www.tiktok.com/@businessoftechBluesky: https://bsky.app/profile/businessoftech.bsky.social
In this episode, Jonathan Steele, a Chicago-based divorce attorney and partner at Behrman LLP, shares crucial insights on cybersecurity tailored for law firms. The discussion covers prevalent digital threats like phishing attacks, business email compromises, and domain security issues. Jonathan stresses the importance of identifying suspicious emails, employing preventive measures such as DMARC, DKIM, and SPF records, and the vital role of modern techniques like pen testing. The conversation highlights the generational challenges in adopting security practices such as zero trust and multi-factor authentication, emphasizing the need for constant vigilance, updated security systems, and proper training. Practical advice on protecting sensitive client data and personal information from identity theft and data brokers is offered, alongside a recommendation for Michael Basil's 'Extreme Privacy' book. This episode provides a well-rounded approach to maintaining robust cybersecurity in the evolving digital landscape.Jonathan gives listeners actionable tips on: 00:00 Intro 01:50 Common Cyber Threats to Law Firms 02:59 Recognizing and Handling Phishing Attempts 08:18 Email Security and Domain Protection 12:47 Updating IT Practices for Modern Security 14:07 Challenges with Legacy IT Systems 17:34 Legal Implications of Cybersecurity 18:15 Personal vs. Business Cybersecurity 19:04 Reputation and Legal Risks 21:25 Evolving Threat Landscape 23:34 Book Recommendation 29:58 Ongoing Cybersecurity Practices 31:17 Final Takeaways and Conclusion Resources mentioned in this episode:Extreme Privacy by Michael BazzellConnect with Jonathan here: Instagram Twitter LinkedIn Facebook https://steelefamlaw.com Connect with me Instagram Pinterest Facebook Twitter Karin on Twitter Karin on LinkedIn Conroy Creative Counsel on Facebook https://conroycreativecounsel.com
In this episode, Jonathan Steele, a Chicago-based divorce attorney and partner at Behrman LLP, shares crucial insights on cybersecurity tailored for law firms. The discussion covers prevalent digital threats like phishing attacks, business email compromises, and domain security issues. Jonathan stresses the importance of identifying suspicious emails, employing preventive measures such as DMARC, DKIM, and SPF records, and the vital role of modern techniques like pen testing. The conversation highlights the generational challenges in adopting security practices such as zero trust and multi-factor authentication, emphasizing the need for constant vigilance, updated security systems, and proper training. Practical advice on protecting sensitive client data and personal information from identity theft and data brokers is offered, alongside a recommendation for Michael Basil's 'Extreme Privacy' book. This episode provides a well-rounded approach to maintaining robust cybersecurity in the evolving digital landscape. Jonathan gives listeners actionable tips on: 00:00 Intro 01:50 Common Cyber Threats to Law Firms 02:59 Recognizing and Handling Phishing Attempts 08:18 Email Security and Domain Protection 12:47 Updating IT Practices for Modern Security 14:07 Challenges with Legacy IT Systems 17:34 Legal Implications of Cybersecurity 18:15 Personal vs. Business Cybersecurity 19:04 Reputation and Legal Risks 21:25 Evolving Threat Landscape 23:34 Book Recommendation 29:58 Ongoing Cybersecurity Practices 31:17 Final Takeaways and Conclusion Resources mentioned in this episode: Extreme Privacy by Michael Bazzell Connect with Jonathan here: Instagram Twitter LinkedIn Facebook https://steelefamlaw.com Connect with me Instagram Pinterest Facebook Twitter Karin on Twitter Karin on LinkedIn Conroy Creative Counsel on Facebook https://conroycreativecounsel.com
In this episode, Jonathan Steele, a Chicago-based divorce attorney and partner at Behrman LLP, shares crucial insights on cybersecurity tailored for law firms. The discussion covers prevalent digital threats like phishing attacks, business email compromises, and domain security issues. Jonathan stresses the importance of identifying suspicious emails, employing preventive measures such as DMARC, DKIM, and SPF records, and the vital role of modern techniques like pen testing. The conversation highlights the generational challenges in adopting security practices such as zero trust and multi-factor authentication, emphasizing the need for constant vigilance, updated security systems, and proper training. Practical advice on protecting sensitive client data and personal information from identity theft and data brokers is offered, alongside a recommendation for Michael Basil's 'Extreme Privacy' book. This episode provides a well-rounded approach to maintaining robust cybersecurity in the evolving digital landscape. Jonathan gives listeners actionable tips on: 00:00 Intro 01:50 Common Cyber Threats to Law Firms 02:59 Recognizing and Handling Phishing Attempts 08:18 Email Security and Domain Protection 12:47 Updating IT Practices for Modern Security 14:07 Challenges with Legacy IT Systems 17:34 Legal Implications of Cybersecurity 18:15 Personal vs. Business Cybersecurity 19:04 Reputation and Legal Risks 21:25 Evolving Threat Landscape 23:34 Book Recommendation 29:58 Ongoing Cybersecurity Practices 31:17 Final Takeaways and Conclusion Resources mentioned in this episode: Extreme Privacy by Michael Bazzell Connect with Jonathan here: Instagram Twitter LinkedIn Facebook https://steelefamlaw.com Connect with me Instagram Pinterest Facebook Twitter Karin on Twitter Karin on LinkedIn Conroy Creative Counsel on Facebook https://conroycreativecounsel.com
**Cold Open (AMAZON GIFT CARD CHALLENGE TO LISTENERS / Headlines without Context)****Skip the Cold Open at 19:50**We've had to dive down the email rabbit hole. Exploring SPF, DKIM, DMARC, and SMTP solutions.Why?Because our job is to deliver leads to our clients. When someone fills out a form on our client's site, in order for us to properly get credit for that lead, the client needs to be alerted immediately.However, as 2024 comes to a close, the website and digital marketing space has been plagued by email deliverability issues, which include websites sending lead form submissions.We reflect on what kind of agency we set out to be and how our continued pursuit of being that hands-off agency has led us down the path of becoming technical email deliverability experts.----------------------------------Our recommended agency tools:everbrospodcast.com/recommended-tools/----------------------------------⭐⭐⭐⭐⭐As always, if you enjoyed this episode or this podcast in general and want to leave us a review or rating, head over to Apple and let us know what you like! It helps us get found and motivates us to keep producing this free content.----------------------------------Want to connect with us? Reach out to us on the everbrospodcast.com website, follow us on YouTube, or connect with us on socials:YouTube: @agencyuTwitter/X: @theagency_uLinkedIn: linkedin.com/company/agencyuFacebook: facebook.com/theagencyuInstagram: @theagencyuReddit: u/JakeHundleyTikTok: @agency.u
In this episode, email deliverability expert Benny Rubin shares insights on effective cold emailing and avoiding the spam folder. He discusses his background in music and how he transitioned to becoming a B2B marketer. Rubin explains the importance of email marketing in enhancing the customer journey and gives examples of successful email campaigns that improved customer loyalty and conversions. He also highlights the potential for DTC brands to tap into the B2B market and the unique sales opportunities it presents. In this conversation, Arlen Robinson and Benny Rubin discuss strategies for effective cold email marketing. They emphasize the importance of finding the right audience and creating a warm introduction by mentioning previous clients or affinity groups. They also highlight the critical aspects of email deliverability, such as setting up SPF, DMARC, and DKIM records. Additionally, they advise startup businesses to consider multiple lead generation channels and not over-index on one specific channel. In terms of personal interests, Benny shares that he plays the violin and has a soft spot for the band Megadeth. Key Episode Takeaways: Email marketing is a powerful tool that can enhance the customer journey and improve customer loyalty and conversions. Cold emailing can be an effective strategy for reaching out to potential B2B customers and securing large-scale orders. Email is a reliable and cost-effective channel for communication, making it a valuable asset for businesses. DTC brands should consider exploring the B2B market and leveraging email marketing to tap into new sales opportunities. Email is still widely used and checked regularly by consumers, making it a valuable channel for marketing and communication. Find the right audience for your cold email campaign by targeting individuals in specific affinity groups or mentioning previous clients in the same industry. Ensure good email deliverability by setting up SPF, DMARC, and DKIM records and considering the use of subdomains. Don't over-index on one lead generation channel; consider multiple channels to diversify your sources of leads. Personalize your cold emails by mentioning previous clients or affinity groups to create a warm introduction. In addition to email marketing, explore other lead generation channels such as affiliate programs or text messaging. If you feel Benny and his team at Senders can help you, you may visit: https://www.senders.co For show transcript and past guests, please visit https://www.ecommercemarketingpodcast.com Or on YouTube at: https://www.youtube.com/channel/UC3PgT0NOGzpdPGQtBK0XLIQ Follow Arlen: Twitter: https://twitter.com/askarlen Facebook: https://www.facebook.com/arlen.robinson.7 Instagram: https://www.instagram.com/arlenyohance/ LinkedIn: https://www.linkedin.com/in/arlenrobinson/ Past guests on the ecommerce marketing podcast include Neil Patel, Nemo Chu, Luke Lintz, Luke Carthy, Amber Armstrong, Kris Ruby and many more. Thanks for listening. Be sure to subscribe and leave a review.