Hacker News new | ask | show | jobs
by aaronmdjones 329 days ago
The attacker did not change the To: header. This would invalidate the DKIM signature and result in a DMARC fail and the message landing in Spam (or being rejected).

You can receive e-mail with a To: header saying anything. It doesn't have to be you.