Does anybody know somebody at Standard Bank's IT department?
I'd like to suggest to them that they update their SPF records from ~all to -all. This would hard fail any dodgy phishing emails that claim to be from Standard Bank, which I believe would be useful for all of their customers.
I'm getting 10s of these phishing emails per day, as are many of my users, some of whom are prone to typing their bank details into any available form with a Standard Bank banner.
I'd like to suggest to them that they update their SPF records from ~all to -all. This would hard fail any dodgy phishing emails that claim to be from Standard Bank, which I believe would be useful for all of their customers.
I'm getting 10s of these phishing emails per day, as are many of my users, some of whom are prone to typing their bank details into any available form with a Standard Bank banner.
- Investec, FNB, ABSA, Nedbank, Tymebank have their SPF records set to hard fail.
- Standard Bank, African Bank, Capitec have theirs set to soft fail.

