Forum Discussion

Varga_Tamas's avatar
Varga_Tamas
Copper Contributor
Dec 12, 2019

Phishing from spoofed corporate email address

Hello everyone,

We received a phishing email in our company today, the problem is that it looked a lot like it came from our own domain: "ms03support-onlinesubscription-noticfication-mailsettings@***.com"
Of course we've put the sender on blocklist, but since the domain is - in theory - our own, we cannot block it. Our idea would be that we should enable receiving emails - besides from external senders - only from the internal email addresses, that exist at our company, and can be controlled by our admins.
Is there any solution for this? Thank you for your answers in advance!