Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

The To header was included in the DKIM signature. The reproduction section of the article shows the result of final delivery to the victim which shows the original To header. If that were removed it would invalidate the signature.


Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: