Just received an email from my mail server administrator. They sent me a link to change my password because it's 'insecure'.

My mail admin is so efficient...

...hey, wait a minute... I AM my mail administrator! 🤦‍♂️

#Phishing #SelfHosting #SysAdminLife #SecurityFail #InfoSec

@stefano I always have a nice little laugh when I receive these
@rrgeorge I think that's the real purpose of those emails
@stefano I got one of those scam mails last year — most amusing was that it was addressed to postmaster@ on my domain!
@stefano Aha. the funniest thing is to receive something like "Andre, your mail account will expire in two days". Like, WAT? I'm paying for the hosting, I created this account myself 😂

@menelion true. "Hey, your mailbox is about to expire! Click here to extend".

Well...the only extension I can do is...zfs quota extension 🙂

@stefano What do you use as mail server, btw? And how do you get through Gmail, for example, policies? I mean, usually self-hosters complain that their emails always land in spam at others' boxes.

@menelion I've been self hosting mail almost forever (since 2001, if I'm not wrong) and updated the configuration to make sure it will pass through those mail filters. I've had problems with Microsoft in the past, rarely with Google or others.

I'm using an implementation similar to the one I've described here: https://it-notes.dragas.net/2024/03/08/make-your-own-email-server-freebsd-opensmptd-rspamd-dovecot-part1/

Make your own E-Mail server - Part 1 - FreeBSD, OpenSMTPD, Rspamd and Dovecot included

Make your own E-Mail server - Part 1 - FreeBSD, OpenSMTPD, Rspamd and Dovecot included

IT Notes
I got it too, pointing at some .xyz domain. Why do we keep sending these to ourselves? 😉
@parseword.bsky.social ahah I don't know. But it seems we keep doing it! 😆

@stefano A company in Norway sent me a .docx file
Something about renewing my Norton360

🤣

@joany sometimes they remind me to renew my Windows license. The only Windows I have are part of my walls, since 1980
@stefano with a convenient pdf or docx file 🤣🤣
@joany of course. They're efficient.
@stefano I’m always getting these or variants of them. Even though I don’t run my own mail server as such (i.e. the hardware is not mine) I do control all my own email/mailboxes at an external hosting provider, so the occasional one that doesn’t get caught by the server side or client side spam filters doesn’t do much more than provoke an eye-roll and the occasional muttered “Yeah…right…”