Posts: 2,029
Threads: 312
Joined: May 2025
From reading about this it appears someone is "spoofing" my comcast email account. I received 64 Delivery status notifications over the last 24 hours. Comcast recommended changing the password of the account and said they would look in to it. I don't think the account is actually hacked because there are no sent messages in the account. I added filters to dump the failed messages in to the Spam folder but It looks like there is not much more I can do. Does this sound correct or am I missing the big picture. T.I.A.
Posts: 32,462
Threads: 3,127
Joined: Apr 2025
Reputation:
0
My guess is that it's a spoof and that changing the account password will have no effect. Obviously it won't hurt to change the pswd anyway.
Posts: 23,027
Threads: 577
Joined: May 2025
Reputation:
2
They are probably just spoofing the return address, rather than hacking your send mail server. This just happened to me the other day...tons of failed messages about FDIC changes. My account had not been comprised (though of course I did check.)
Posts: 2,029
Threads: 312
Joined: May 2025
OK, thanks. Seems to be over for now but didn't know if there was anything else to do.
Posts: 23,027
Threads: 577
Joined: May 2025
Reputation:
2
I don't think there is much you can do, other than verify everything's cool on your side. The two times I know of that I have been spoofed only lasted a few hours.
Posts: 9,997
Threads: 464
Joined: Oct 2021
Reputation:
0
In such cases, the spammer's software typically uses the email address for 24 hours or less and then rolls onto the next.
With all of my email accounts and domains I get hit a couple of times each year.
When it happens, I set up a mail rule to automatically put the bounce messages into a new folder. When the torrent comes to a halt I'll take a quick look for any legit mail that might have been captured and then trash it all at once.