Missing spf record
Hey friends how are you hope you are doing well.
Today we are discussing about really interesting topic that is missing spf record in simple way how you can send Gmail from website Gmail to anyone.
This kind of vulnerabilities are very useful in social engineering.
This website are very easy to exploit want to know how to find and exploit this vulnerabilities do follow the following steps:
First you have to check whether website have a Valid SPF record or not.
For checking SPF record do visit this website:
https://www.dmarcanalyzer.com/spf/checker/
Once you found website with no valid SPF record
You have to use any fake mailer service to send Gmail from target website to the victim.
And boom you are successfully exploited this vulnerabilitie.
If you have any doubts do watch this video:
And also don't forget to follow us on Instagram and GitHub and do like our content on Instagram:
Comments
Post a Comment