Sender Verification Tool

Verify if an email sender is legitimate or spoofed. The authoritative tool used by security professionals to detect email impersonation and sender spoofing.

The name shown as the sender (helps detect impersonation)

If the email has a different Reply-To address (red flag if mismatched)

What This Tool Checks:

  • Display name vs domain mismatch (impersonation)
  • Companies using free email providers
  • Reply-To address mismatches
  • Typosquatting and lookalike domains
  • Suspicious domain patterns and TLDs
  • Homograph attacks

Common Spoofing Tactics

Display Name Impersonation

Display: "PayPal Security"

Email: random123@gmail.com

Legitimate companies use their own domains, not free email

Reply-To Hijacking

From: support@legitimate-looking.com

Reply-To: attacker@different-domain.com

Your reply goes to a different address controlled by the attacker

Typosquatting

Real: support@paypal.com

Fake: support@paypa1.com (using "1" instead of "l")

Carefully verify domain spelling