<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"><channel><description>Email security guy at www.redsift.com from Boulder, CO. I like music, travel, dogs, beer and sports. I dislike crazy social platforms.</description><link>https://bsky.app/profile/bwestnedge.bsky.social</link><title>@bwestnedge.bsky.social - Brian Westnedge </title><item><link>https://bsky.app/profile/bwestnedge.bsky.social/post/3mu3o3jtdvs2o</link><description>New research from @redsift.com reveals only 38.4% of leading U.S. orgs have full DMARC enforcement, while AI is making phishing faster and harder to spot. Critical infrastructure is especially exposed. Email authentication can&#39;t be an afterthought.&#xA;&#xA;https://vmblog.com/news/midyear-2026-email-security-gaps-persist-as-ai-raises-impersonation-risk/</description><pubDate>27 Aug 2026 20:16 +0000</pubDate><guid isPermaLink="false">at://did:plc:e7mfoh4cbhssodjcirsixlf7/app.bsky.feed.post/3mu3o3jtdvs2o</guid></item><item><link>https://bsky.app/profile/bwestnedge.bsky.social/post/3mu3kaeq7dk2c</link><description>https://redsift.com/guides/dns-governance</description><pubDate>27 Aug 2026 19:07 +0000</pubDate><guid isPermaLink="false">at://did:plc:e7mfoh4cbhssodjcirsixlf7/app.bsky.feed.post/3mu3kaeq7dk2c</guid></item><item><link>https://bsky.app/profile/bwestnedge.bsky.social/post/3mttr5f6po22c</link><description>https://www.economist.com/by-invitation/2026/08/23/fears-of-ai-induced-armageddon-are-overdone</description><pubDate>24 Aug 2026 16:49 +0000</pubDate><guid isPermaLink="false">at://did:plc:e7mfoh4cbhssodjcirsixlf7/app.bsky.feed.post/3mttr5f6po22c</guid></item><item><link>https://bsky.app/profile/bwestnedge.bsky.social/post/3ms7fx3n64k24</link><description>Quick hit on Yahoo finance commenting on the recent Iranian attacks on critical water infrastructure and other topics: https://uk.finance.yahoo.com/video/cyberattacks-businesses-avoid-being-soft-203912360.html</description><pubDate>03 Aug 2026 21:11 +0000</pubDate><guid isPermaLink="false">at://did:plc:e7mfoh4cbhssodjcirsixlf7/app.bsky.feed.post/3ms7fx3n64k24</guid></item><item><link>https://bsky.app/profile/bwestnedge.bsky.social/post/3mregb5dh2c2j</link><description>The FBI has issued an updated warning about scammers posing as agents on socials. Fraudsters clone the IC3 fraud-reporting site and use AI-generated content to target people who&#39;ve already been scammed with fake recovery offers. I added a few comments&#xA;&#xA;https://www.forbes.com/sites/daveywinder/2026/07/21/fbi-issues-new-fake-feds-warning-for-social-media-users/</description><pubDate>24 Jul 2026 03:34 +0000</pubDate><guid isPermaLink="false">at://did:plc:e7mfoh4cbhssodjcirsixlf7/app.bsky.feed.post/3mregb5dh2c2j</guid></item><item><link>https://bsky.app/profile/bwestnedge.bsky.social/post/3mpygnxj2rc2b</link><description>Email wasn&#39;t designed with security in mind, and attackers know it. As AI makes phishing cheaper and easier to scale, #DMARC and #BIMI are becoming baseline defenses — not nice-to-haves.&#xA;&#xA;https://www.helpnetsecurity.com/2026/07/06/ciso-email-security-strategy/</description><pubDate>06 Jul 2026 15:44 +0000</pubDate><guid isPermaLink="false">at://did:plc:e7mfoh4cbhssodjcirsixlf7/app.bsky.feed.post/3mpygnxj2rc2b</guid></item><item><link>https://bsky.app/profile/bwestnedge.bsky.social/post/3mp7aufi6wc2u</link><description>🚨 65% of South Carolina&#39;s largest companies lack full DMARC protection — and cybercrime cost state residents $264M last year, per a new report from @redsift.com. &#xA;With AI supercharging phishing scams, email security has never mattered more.&#xA;&#xA;#Cybersecurity #DMARC&#xA;https://charlestoncitypaper.com/2026/06/26/s-c-companies-lag-on-security-as-cybercrime-losses-soar/</description><pubDate>26 Jun 2026 15:24 +0000</pubDate><guid isPermaLink="false">at://did:plc:e7mfoh4cbhssodjcirsixlf7/app.bsky.feed.post/3mp7aufi6wc2u</guid></item><item><link>https://bsky.app/profile/bwestnedge.bsky.social/post/3moxqm4tybc2e</link><description>You can&#39;t migrate cryptography you can&#39;t see. 🔐&#xA;&#xA;With new federal PQC deadlines (2030-2031) and Google targeting 2029, the time to map your PKI estate is NOW — not when the algorithm swap begins.&#xA;&#xA;Start with discovery. redsift.com/blog/post-quan…</description><pubDate>23 Jun 2026 15:44 +0000</pubDate><guid isPermaLink="false">at://did:plc:e7mfoh4cbhssodjcirsixlf7/app.bsky.feed.post/3moxqm4tybc2e</guid></item><item><link>https://bsky.app/profile/bwestnedge.bsky.social/post/3mo4f7sot6c2c</link><description>AI assistants are now reading and acting on your emails. That makes #DMARC enforcement more critical than ever since a spoofed message that fools a human is even more dangerous when it fools an AI. The future of email trust is what we work on every day @redsift.com &#xA;&#xA;https://www.fastmail.com/blog/the-future-of-email/</description><pubDate>12 Jun 2026 18:39 +0000</pubDate><guid isPermaLink="false">at://did:plc:e7mfoh4cbhssodjcirsixlf7/app.bsky.feed.post/3mo4f7sot6c2c</guid></item><item><link>https://bsky.app/profile/bwestnedge.bsky.social/post/3mnkfymyrsk2p</link><description>Great convo with Steve Hall from GlobalSign about email authentication and why it matters more now than ever in an AI world. With BIMI and Common Mark Certificates, organizations of any size can add a verified logo to their messages in the inbox.&#xA;&#xA;Apple: apple.co/4oaFDA3&#xA;Spotify: bit.ly/4uXqQva&#xA;https://apple.co/4oaFDA3</description><pubDate>05 Jun 2026 15:05 +0000</pubDate><guid isPermaLink="false">at://did:plc:e7mfoh4cbhssodjcirsixlf7/app.bsky.feed.post/3mnkfymyrsk2p</guid></item><item><link>https://bsky.app/profile/bwestnedge.bsky.social/post/3mnfcyhyq2226</link><description>I add some comments to how hackers tricked Meta&#39;s Instagram AI support chatbot into handing over access to high-profile accounts, including the dormant Obama White House page, by bypassing identity checks. &#xA;https://money.usnews.com/investing/news/articles/2026-06-03/analysis-high-profile-meta-ai-chatbot-breach-spotlights-security-risks-of-automation</description><pubDate>03 Jun 2026 14:28 +0000</pubDate><guid isPermaLink="false">at://did:plc:e7mfoh4cbhssodjcirsixlf7/app.bsky.feed.post/3mnfcyhyq2226</guid></item><item><link>https://bsky.app/profile/bwestnedge.bsky.social/post/3mn3bbk2a6c24</link><description>Post-quantum crypto matters for email — but DKIM&#39;s risk isn&#39;t &#34;store now, decrypt later.&#34; It&#39;s future forgery. Fix your DKIM/DMARC basics now, and focus PQ efforts on TLS, VPNs &amp; encrypted archives first. #dmarc #emailsecurity&#xA;https://redsift.com/blog/dkims-post-quantum-risk-is-different via @redsift.com</description><pubDate>30 May 2026 14:30 +0000</pubDate><guid isPermaLink="false">at://did:plc:e7mfoh4cbhssodjcirsixlf7/app.bsky.feed.post/3mn3bbk2a6c24</guid></item><item><link>https://bsky.app/profile/bwestnedge.bsky.social/post/3mmykv75ur22a</link><description>One Job That Is Growing in the A.I. Era? Cybersecurity Experts.&#xA;Demand for security engineers has surged as artificial intelligence generates a glut of new code and models like Anthropic’s Mythos create new concerns.https://www.nytimes.com/2026/05/24/technology/ai-cybersecurity-jobs.html&#xA;https://www.nytimes.com/2026/05/24/technology/ai-cybersecurity-jobs.html?emc=edit_ot_20260528&amp;nl=on-tech&amp;segment_id=220621</description><pubDate>29 May 2026 12:44 +0000</pubDate><guid isPermaLink="false">at://did:plc:e7mfoh4cbhssodjcirsixlf7/app.bsky.feed.post/3mmykv75ur22a</guid></item><item><link>https://bsky.app/profile/bwestnedge.bsky.social/post/3mmhbzgkotc2u</link><description>Big email security update! The IETF published RFC 9989, officially moving DMARC to a Proposed Standard.&#xA;&#xA;Key changes:&#xA;🛑 The pct (percentage) tag is dead.&#xA;🌲 Public Suffix Domains now use a DNS Tree Walk.&#xA;📊 Reporting is split into RFC 9990 &amp; 9991.&#xA;&#xA;#DMARC #Infosec #IETF&#xA;https://redsift.com/blog/dmarc-rfc-9989</description><pubDate>22 May 2026 15:50 +0000</pubDate><guid isPermaLink="false">at://did:plc:e7mfoh4cbhssodjcirsixlf7/app.bsky.feed.post/3mmhbzgkotc2u</guid></item><item><link>https://bsky.app/profile/bwestnedge.bsky.social/post/3mlwhqqo5mc2m</link><description>A look behind the scenes on our work benchmarking smaller AI models vs the big boys for large-scale security analysis. The scores come in a lot closer than expected https://redsift.com/blog/benchmarking-llms-real-security-task</description><pubDate>15 May 2026 23:18 +0000</pubDate><guid isPermaLink="false">at://did:plc:e7mfoh4cbhssodjcirsixlf7/app.bsky.feed.post/3mlwhqqo5mc2m</guid></item><item><link>https://bsky.app/profile/bwestnedge.bsky.social/post/3mk4b6krz622a</link><description>What does email have to do with the &#34;Legend of Aang&#34; leak? Read on:&#xA;https://pagesix.com/2026/04/21/hollywood/80m-film-leak-hits-paramount-as-explosive-report-reveals-hollywood-is-terrifyingly-exposed-to-hackers/</description><pubDate>22 Apr 2026 19:46 +0000</pubDate><guid isPermaLink="false">at://did:plc:e7mfoh4cbhssodjcirsixlf7/app.bsky.feed.post/3mk4b6krz622a</guid></item><item><link>https://bsky.app/profile/bwestnedge.bsky.social/post/3mim3zrl5e22r</link><description>Provided some commentary for this article: https://www.axios.com/local/boston/2026/04/03/massachusetts-phishing-email-security</description><pubDate>03 Apr 2026 16:06 +0000</pubDate><guid isPermaLink="false">at://did:plc:e7mfoh4cbhssodjcirsixlf7/app.bsky.feed.post/3mim3zrl5e22r</guid></item><item><link>https://bsky.app/profile/bwestnedge.bsky.social/post/3mbccrhbxxc2a</link><description>Proactive brand monitoring is essential for protecting not just an organization, but its entire supply chain from these type of attacks https://redsift.com/resources/blog/how-brand-monitoring-could-have-prevented-the-costco-lobster-heist via @redsift.com</description><pubDate>31 Dec 2025 16:43 +0000</pubDate><guid isPermaLink="false">at://did:plc:e7mfoh4cbhssodjcirsixlf7/app.bsky.feed.post/3mbccrhbxxc2a</guid></item><item><link>https://bsky.app/profile/bwestnedge.bsky.social/post/3m7netz66ik2h</link><description>A pause on my normal commentary on email and phishing for a consumer alert ;-) https://www.azfamily.com/2025/12/10/porch-pirates-using-wi-fi-jamming-technology-disable-security-cameras/</description><pubDate>10 Dec 2025 15:30 +0000</pubDate><guid isPermaLink="false">at://did:plc:e7mfoh4cbhssodjcirsixlf7/app.bsky.feed.post/3m7netz66ik2h</guid></item><item><link>https://bsky.app/profile/bwestnedge.bsky.social/post/3m73ppeei222w</link><description>The end of the line for Authenticated Received Chain (ARC) https://redsift.com/resources/blog/ietf-calls-for-end-of-arc-experiment-what-it-means-for-email-authentication via @redsift.com</description><pubDate>03 Dec 2025 14:56 +0000</pubDate><guid isPermaLink="false">at://did:plc:e7mfoh4cbhssodjcirsixlf7/app.bsky.feed.post/3m73ppeei222w</guid></item><item><link>https://bsky.app/profile/bwestnedge.bsky.social/post/3m4qedqt2rk2c</link><description>Most Penn domains are open to spoofing and phishing from a DMARC perspective: https://www.msn.com/en-us/money/careers/penn-is-investigating-a-fraudulent-email-breach/ar-AA1PCqbd</description><pubDate>03 Nov 2025 15:43 +0000</pubDate><guid isPermaLink="false">at://did:plc:e7mfoh4cbhssodjcirsixlf7/app.bsky.feed.post/3m4qedqt2rk2c</guid></item><item><link>https://bsky.app/profile/bwestnedge.bsky.social/post/3m33z5qys6223</link><description>DMARC is a rare control that removes an entire class of malicious email, helps companies remain compliant with new email requirements, and should be the center of an email security plan for 2026. https://www.darkreading.com/cybersecurity-operations/closing-the-gap-why-enforce-dmarc-in-2026 via @redsift.com</description><pubDate>13 Oct 2025 20:04 +0000</pubDate><guid isPermaLink="false">at://did:plc:e7mfoh4cbhssodjcirsixlf7/app.bsky.feed.post/3m33z5qys6223</guid></item><item><link>https://bsky.app/profile/bwestnedge.bsky.social/post/3lvbi5zjbec25</link><description>Let&#39;s meet up at @blackhatevents.bsky.social to discuss how we can leverage @redsift.com AI-powered cybersecurity solutions and data for your company and explore strategic and technical partnership opportunities!&#xA;&#xA;Book a meet or let&#39;s connect at a social event! https://calendly.com/d/cs4j-8d2-xdy/red-sift-meeting-at-black-hat</description><pubDate>31 Jul 2025 15:45 +0000</pubDate><guid isPermaLink="false">at://did:plc:e7mfoh4cbhssodjcirsixlf7/app.bsky.feed.post/3lvbi5zjbec25</guid></item><item><link>https://bsky.app/profile/bwestnedge.bsky.social/post/3lu3u3qh36s2j</link><description>https://blog.redsift.com/email/svgs-with-javascript-are-bypassing-traditional-email-security-learn-how-to-stay-secure/</description><pubDate>16 Jul 2025 16:37 +0000</pubDate><guid isPermaLink="false">at://did:plc:e7mfoh4cbhssodjcirsixlf7/app.bsky.feed.post/3lu3u3qh36s2j</guid></item><item><link>https://bsky.app/profile/bwestnedge.bsky.social/post/3ltzjduhqpk23</link><description>The emails...are sent using spoofed addresses or domains that mimic legitimate brands. Many of the recipient domains lacked proper email authentication controls, including:&#xA;&#xA;No DKIM records&#xA;Missing or unenforced DMARC policies&#xA;Misconfigured SPF settings https://www.infosecurity-magazine.com/news/hackers-svg-files-javascript/</description><pubDate>15 Jul 2025 18:20 +0000</pubDate><guid isPermaLink="false">at://did:plc:e7mfoh4cbhssodjcirsixlf7/app.bsky.feed.post/3ltzjduhqpk23</guid></item></channel></rss>