Page 1 of 1

Forum notification marked as potential phishing/scam

Posted: Mon Apr 25, 2016 8:43 am
by bNarFProfCrazy
Thunderbird marks your forum notifications e-mail as potential scam/phishing.

This is an big red (ugly) warning on every e-mail notification that is send by your forum.
EMailNotification.png
EMailNotification.png (53.29 KiB) Viewed 2959 times
English translation of the warning:
"This message could be a scam."

https://support.mozilla.org/en-US/kb/th ... -detection

Potential cause:
Links where the text doesn't match the server name (for example, the text of the message might say "https://secure.example.com" but the link actually goes to "http://phishing.example.com" instead). Phishers do this to fool you into going to their site. Unfortunately some legitimate mailing lists also do this with redirectors for tracking purposes.
Example:
If you want to view the newest post made since your last visit, click the following link: viewtopic.php?f=93&t=17548&p=152404&e=152404
But the link really points to:
(Data truncated due to unkown data)

A possible solution
I personally don't like being tracked, but I know that this might be necessary for you.
However you could most likely fix the issue if you use some DNS features to hide that you actually call a strange URL.
(I'm not familliar with DNS setup, so I cannot explain how to setup it, but I know it is possible)
You use a domain called tracking.factorio.com and bind its IP to u233XXX.ct.sendgrid.net and
then you can send the emails with links that link to https://tracking.factorio.com/wf/click?upn=... which is far less suspicious.
I don't know whether this is enough to avoid thunderbirds warning though.

Another solution would be that host the tracking on your own page or first link to your own page that redirects to the tracking page.
forums.factorio.com/tracking/....

Re: Forum notification marked as potential phishing/scam

Posted: Mon Apr 25, 2016 8:55 am
by kovarex
bNarFProfCrazy wrote: Example:
If you want to view the newest post made since your last visit, click the following link: viewtopic.php?f=93&t=17548&p=152404&e=152404
But the link really points to:
(Data truncated due to unkown data)
We are not doing that.

Re: Forum notification marked as potential phishing/scam

Posted: Mon Apr 25, 2016 9:12 am
by kovarex
kovarex wrote:
bNarFProfCrazy wrote: Example:
If you want to view the newest post made since your last visit, click the following link: viewtopic.php?f=93&t=17548&p=152404&e=152404
But the link really points to:
(Data truncated due to unkown data)
We are not doing that.
Oh, so we are not doing that, but the shitty mail sending service we use is doing that, I will try to solve it.

Re: Forum notification marked as potential phishing/scam

Posted: Mon Apr 25, 2016 9:24 am
by bNarFProfCrazy
Thanks.

Re: Forum notification marked as potential phishing/scam

Posted: Mon Apr 25, 2016 12:54 pm
by bNarFProfCrazy
The latest of your forum e-mail notifications was clean and also had a better layout than the others.

Thanks for addressing this issue so fast. :D

Re: Forum notification marked as potential phishing/scam

Posted: Mon Apr 25, 2016 4:39 pm
by steinio
As i read this thread... is it possible to deactivate email notification and keep subscription?

Greetings steinio

Re: Forum notification marked as potential phishing/scam

Posted: Mon Apr 25, 2016 5:04 pm
by daniel34
steinio wrote:As i read this thread... is it possible to deactivate email notification and keep subscription?

Greetings steinio
That's what bookmarks are for (ucp.php?i=main&mode=bookmarks), they do the same as subscriptions but they won't send you a notification.