1. Home
  2. Computing & Technology
  3. Internet / Network Security

Email Spoofing

From Tony Bradley, CISSP-ISSAP, for About.com

Definition: Email spoofing is the act of forging the header information on an email so that it appears to have originated from somewhere other than its true source. The protocol used for email, SMTP (Simple Mail Transfer Protocol), does not have any authentication to verify the source. By changing the header information, someone can make an email appear to come from whomever they choose. Miscreants can even copy the targeted organization's logo and formatting, to give the email an authentic look and feel.

Email spoofing is used by virus authors. By propagating a virus with a spoofed email source, it is more difficult for users who receive the virus to track its source to stop the virus.

Email spoofing is also used by distributors of spam to hide their identity. In March 2009, About.com's daily newsletter was the victim of a high volume of spoofed email from spammers attempting to sell Viagra. Because the email contained About.com's logo and address, some recipients believed it actually originated from About.com.

Explore Internet / Network Security
About.com Special Features

Stay connected and entertained with reviews on tips on the latest HDTVs, cellphones and more. More >

Easy ways to connect two computers for networking purposes. More >

  1. Home
  2. Computing & Technology
  3. Internet / Network Security
  4. Security 101
  5. Computer Security Glossary
  6. E
  7. Network Security Glossary: Email Spoofing

©2009 About.com, a part of The New York Times Company.

All rights reserved.