Remember, it’s actually easy to show a different reply-to address than what is used to transmit the email. Always double-check the FROM email address.
Recent Phishing Email Debrief

What are you even trying to say here? The FROM address is clearly ‘’ which is exactly the same domain which is owned by you. Now, this is not possible without someone hacking into your server or it’s an inside job.

