Skip to content

Cybersecurity Insights.

Expert guidance on protecting your business from modern cyber threats — EDR, MFA, ransomware response, compliance, and security architecture.

54 articles in Cybersecurity
54 articles
Cybersecurity

The SPF Ten-Lookup Limit: How One SaaS Tool Breaks Your Mail

Adding one include can push an SPF record past ten DNS lookups, and RFC 7208 requires receivers to return permerror. The record still looks valid to the eye and to many checkers, the failure moves between senders, and under a DMARC policy of reject the message rides entirely on DKIM.

2026-09-21 · 13 min readRead →
Cybersecurity

Moving DMARC From p=none to p=reject Without Losing Mail

Most domains publish p=none, which detects spoofing but blocks none of it. This walks the staged path to enforcement: what the removed pct tag actually did, why aligned DKIM is what saves forwarded mail, and a readiness test to run before you change the record.

2026-09-16 · 15 min readRead →
Cybersecurity

How to Actually Read a DMARC Aggregate Report

You turned DMARC on and the zipped XML started arriving daily. This walks the report structure field by field, shows how to tell a real spoof from a broken SaaS sender or a forwarder that kept DKIM, and explains why zero failures is a narrower claim than it looks.

2026-09-15 · 9 min readRead →
Cybersecurity

Your MSP Filled Out the Form. You Signed It.

The technical answers came from your IT provider. The signature is yours. And the harder problem is not the application at all — it is proving the control stayed true all year.

2026-08-11 · 10 min readRead →