Hello
Our customer are getting obvious spam messages and seems that Sophos Central Email is fooled with quite easy tricks (personal opinion here). For example emails getting through see the sender as:
From: john.doe HR Notification <something@someting.com>
To: john.doe <john.doe@customerdomain.com>
Shouldn't this at least get the "possible spam" identification?
We have also seen Central Email to fall into simple Reply-to Field trick where users email client shows the sender to be withing the organisation.
Yes we have submitted the samples and for the latest one we also have a support case open. Anybody else seeing same happening?
/K
Added tags
[edited by: Raphael Alganes at 2:24 AM (GMT -7) on 8 Jun 2023]