LEARNING TOPIC
Email and domains
Authentication, mail routing and payment-request checks.
Verify a supplier bank-detail change
Use an independent approval route before an authentic-looking invoice redirects payment.
Inspect the real domain in an email link
Separate a convincing label, subdomain and redirect from the service you intended to visit.
Handle an unexpected attachment without running it
Verify the business request and file type before allowing an attachment to become an executable action.
Review DNS changes for a business domain
Check authoritative settings and important records before blaming a website or mail outage on propagation.
Protect the account that controls your domain
Review registrar access, recovery and change alerts for a critical business dependency.
Read an email authentication result without overtrusting it
Use trusted message headers to understand SPF, DKIM and DMARC while still checking the request.
Plan an SPF record from a sender inventory
List legitimate sending services before editing the DNS policy for your domain.
Verify DKIM signing for a domain you manage
Check the selector, DNS publication and real-message result before declaring signing complete.
Introduce DMARC monitoring before enforcement
Use aggregate evidence to find legitimate senders before applying a stricter domain policy.
Check mailbox forwarding and filters after suspicious activity
Find rules that copy, hide or redirect messages without deleting useful evidence.