Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

>I think it’s MS Outlook that only shows the name in email chain when forwarding.

I complained to support about Outlook iOS doing this, not just for forwarding... but all received emails display only the name. I receive AppleID phishing attacks constantly to my old hotmail account, Microsoft helpfully sends all them to my inbox and Outlook shows them as from 'Apple' unless I click the sender name and then it shows something like totallynotlegit@paypalappleidscams.tk. Their link scanner is effective around 50% of the time. It's not good enough.

Microsoft does not consider this a bug or a threat in any way. I have been active about this on social media and have had my screenshots and complaints picked up by largish accounts like @swiftonsecurity.

At this point Microsoft is complicit with the phishers. Oh well, not the first time an entire industry thrived off their lack of security.



They do this on desktop Outlook as well. It's really great when you work at a company where two people have the same name, and you have to click seven buttons to see who sent the mail. Or you get added to a forward chain and you really can't tell.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: