window.nitroFragments['2af5a72b3cea99ec6b52eda3a21a7120'] = {"isLazyLoaded":true,"content":"<div id="av_section_14" data-section-bg-repeat="stretch" class="avia-section av-7ux4xa1-ae05f10917e85711dfbaff30884ff104 alternate_color avia-section-no-padding avia-no-border-styling avia-builder-el-289 el_after_av_section el_before_av_section u-padding--larger--ends u-padding--ends--portable avia-full-stretch avia-bg-style-scroll container_wrap fullsize nitro-lazy" nitro-fragment-parent><div class="container av-section-cont-open"><div class="template-page content  av-content-full alpha units"><div class="post-entry post-entry-type-page post-entry-45086"><div class="entry-content-wrapper clearfix"> <div class="hr av-7fryamx-1d5263b9c5c92e1931e25252c120236a hr-invisible  avia-builder-el-290  el_before_av_textblock  avia-builder-el-first  av-small-hide av-mini-hide"><span class="hr-inner"><span class="hr-inner-style"></span></span></div> <section class="av_textblock_section av-6xr8dw9-8e0393c1e9dbe0bea7b58a6da3d86172"><div class="avia_textblock av_inherit_color"><h2 class="p1" style="text-align:center;"><strong>Critical Errors Organizations in Saudi Arabia are Making</strong></h2> <p style="text-align:center;"><span style="font-weight:400;">On analyzing 1049 Saudi Arabian domains from various sectors and industries, it is evident that organizations in Saudi Arabia are making some critical errors that can jeopardize their online reputation and the safety of their clients:</span></p> </div></section> <div class="flex_column av-6lbv9y1-f410d18d523b45f16833069d406b44b1 av_one_half  avia-builder-el-292  el_after_av_textblock  el_before_av_one_half  u-padding--large--ends--desk first flex_column_div av-zero-column-padding  column-top-margin"><div class="avia-icon-list-container av-670ow6x-16b1d4cce777aa2606943f27c324264a  avia-builder-el-293  el_before_av_hr  avia-builder-el-first"><ul class="avia-icon-list avia_animate_when_almost_visible avia-icon-list-left av-iconlist-big av-670ow6x-16b1d4cce777aa2606943f27c324264a avia-iconlist-animate"> <li><div class="iconlist_icon av-5vj7ck9-9010bf0faf4d34a16910ceb46c62c157 avia-font-entypo-fontello"><span class="iconlist-char" aria-hidden="true" data-av_icon="" data-av_iconfont="entypo-fontello"></span></div><article class="article-icon-entry"><div class="iconlist_content_wrap"><header class="entry-content-header"><h4 class="av_iconlist_title iconlist_title  av_inherit_color">Incorrect SPF records</h4></header><div class="iconlist_content"><p><span style="font-weight:400;">Incorrect SPF records can result in emails being marked as spam or rejected by recipient mail servers, causing delivery problems. If a large number of emails are marked as spam or rejected, the sender&#8217;s domain may be considered untrustworthy, resulting in a negative impact on their email reputation. Incorrect SPF records can prevent proper authentication of emails, making them vulnerable to phishing attacks and other forms of email fraud. If emails from a sender with an incorrect SPF record are marked as spam, recipients may become confused about the sender&#8217;s identity, damaging the sender&#8217;s credibility.</span></p> <p><span style="font-weight:400;">It&#8217;s important to have a well-configured and up-to-date SPF record to ensure that emails sent from your domain are properly authenticated and delivered to their intended recipients.</span></p> </div></div><footer class="entry-footer"></footer></article><div class="iconlist-timeline"></div></li> <li><div class="iconlist_icon av-54vn0vt-9648f0c764d9544970f8b8349eafb64d avia-font-entypo-fontello"><span class="iconlist-char" aria-hidden="true" data-av_icon="" data-av_iconfont="entypo-fontello"></span></div><article class="article-icon-entry"><div class="iconlist_content_wrap"><header class="entry-content-header"><h4 class="av_iconlist_title iconlist_title  av_inherit_color">Low SPF and DMARC adoption rates</h4></header><div class="iconlist_content"><p><span style="font-weight:400;">A high percentage of domains altogether lacked the presence of SPF and DMARC records. SPF and DMARC are industry standards when it comes to protecting your domain against unauthorized use, minimizing spoofing, phishing, BEC and also serving as the first line of defense against ransomware attacks.</span></p> </div></div><footer class="entry-footer"></footer></article><div class="iconlist-timeline"></div></li> </ul></div> <div class="hr av-46qscah-279526aa6cfe16baaa45f05e59cac9af hr-invisible  avia-builder-el-294  el_after_av_iconlist  avia-builder-el-last  av-small-hide av-mini-hide"><span class="hr-inner"><span class="hr-inner-style"></span></span></div></div><div class="flex_column av-3u2dfy1-1718c6eb890ee41bc427a31e348f8548 av_one_half  avia-builder-el-295  el_after_av_one_half  avia-builder-el-last  u-padding--large--ends--desk flex_column_div av-zero-column-padding  column-top-margin"><div class="avia-icon-list-container av-3o4xjkp-77b91e7771aa42649d65927ccd353fff  avia-builder-el-296  el_before_av_hr  avia-builder-el-first"><ul class="avia-icon-list avia_animate_when_almost_visible avia-icon-list-left av-iconlist-big av-3o4xjkp-77b91e7771aa42649d65927ccd353fff avia-iconlist-animate"> <li><div class="iconlist_icon av-2xq8kt5-5e395233f63809d7b815f0c9ef142b22 avia-font-entypo-fontello"><span class="iconlist-char" aria-hidden="true" data-av_icon="" data-av_iconfont="entypo-fontello"></span></div><article class="article-icon-entry"><div class="iconlist_content_wrap"><header class="entry-content-header"><h4 class="av_iconlist_title iconlist_title  av_inherit_color">Lack of MTA-STS implementation</h4></header><div class="iconlist_content"><p><span style="font-weight:400;">MTA-STS is an email authentication protocol that enforces TLS-encryption for SMTP emails in transit. This helps prevent man-in-the-middle attacks like DNS spoofing, and helps domain owners strengthen the security of their email systems. The lack of MTA-STS is an existing vulnerability in most Saudi Arabian domains.</span></p> </div></div><footer class="entry-footer"></footer></article><div class="iconlist-timeline"></div></li> <li><div class="iconlist_icon av-2dftzvd-b6a0e53af44dab83f25bf6d848f9870f avia-font-entypo-fontello"><span class="iconlist-char" aria-hidden="true" data-av_icon="" data-av_iconfont="entypo-fontello"></span></div><article class="article-icon-entry"><div class="iconlist_content_wrap"><header class="entry-content-header"><h4 class="av_iconlist_title iconlist_title  av_inherit_color">Too many DNS lookups for SPF</h4></header><div class="iconlist_content"><p><span style="font-weight:400;">As specified by RFC, SPF has a 10 DNS lookup limit, exceeding which can break SPF resulting in false negatives during authentication. Saudi Arabian domains showed a considerable percentage of invalid SPF records due to too many DNS lookups. </span></p> </div></div><footer class="entry-footer"></footer></article><div class="iconlist-timeline"></div></li> <li><div class="iconlist_icon av-2dftzvd-7-fe22c660733b8f657e9ee552d8250c31 avia-font-entypo-fontello"><span class="iconlist-char" aria-hidden="true" data-av_icon="" data-av_iconfont="entypo-fontello"></span></div><article class="article-icon-entry"><div class="iconlist_content_wrap"><header class="entry-content-header"><h4 class="av_iconlist_title iconlist_title  av_inherit_color">Multiple SPF records for the same domain</h4></header><div class="iconlist_content"><p><span style="font-weight:400;">More than one SPF record for a single domain also leads to invalid SPF. The domain analysis revealed the presence of multiple SPF records for the same domain in some cases. For it to be considered valid, a single SPF record per domain is the way to go. </span></p> </div></div><footer class="entry-footer"></footer></article><div class="iconlist-timeline"></div></li> </ul></div> <div class="hr av-268q5eh-4a479bf234d7c60219f844bf76d01eb3 hr-invisible  avia-builder-el-297  el_after_av_iconlist  avia-builder-el-last  av-small-hide av-mini-hide"><span class="hr-inner"><span class="hr-inner-style"></span></span></div></div> </div></div></div></div></div>"}; window.dispatchEvent(new CustomEvent('nitrofragmentloaded', {detail: "2af5a72b3cea99ec6b52eda3a21a7120"}));