How to Test for Open Mail Relays
ID: 0b351dd3-af79-5e87-84f2-16b71185d38a
STIX ID: report--0b351dd3-af79-5e87-84f2-16b71185d38a
Feed Name: Black Hills Infosec Blog
Threat Score
This guest blog explains the risk of "partially open mail relays"—SMTP misconfigurations that allow relaying from external to internal addresses or between internal addresses—demonstrates how to test for them using telnet/netcat, port checks, dig/nslookup and a Metasploit module, and recommends mitigations including requiring authentication, using STARTTLS, and restricting allowed sender IPs.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
