{"id":398685,"date":"2026-08-02T04:07:00","date_gmt":"2026-08-02T04:07:00","guid":{"rendered":"https:\/\/malwaretips.com\/blogs\/?p=398685"},"modified":"2026-08-02T04:07:00","modified_gmt":"2026-08-02T04:07:00","slug":"email-configuration-notice-scam-how-fake-it-settings-steal-your-password","status":"publish","type":"post","link":"https:\/\/malwaretips.com\/blogs\/email-configuration-notice-scam-how-fake-it-settings-steal-your-password\/","title":{"rendered":"Email Configuration Notice Scam: How Fake IT Settings Steal Your Password"},"content":{"rendered":"\n<p class=\"wp-block-paragraph\">The port numbers in this email look technical\u2014and they are real. That is what makes the message deceptive: criminals mix genuine mail settings with a false account warning to make a phishing link feel official.<\/p><div id=\"mwtad107658238\" class=\"gas_fallback-ad_309684--placement_360520\" style=\"margin-top: 30px;margin-bottom: 30px;\"><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-7750719144850257\" crossorigin=\"anonymous\"><\/script><ins class=\"adsbygoogle\" style=\"display:block;\" data-ad-client=\"ca-pub-7750719144850257\" \ndata-ad-slot=\"3957935887\" \ndata-ad-format=\"auto\" data-full-width-responsive=\"true\"><\/ins>\n<script> \n(adsbygoogle = window.adsbygoogle || []).push({}); \n<\/script>\n<\/div>\n\n\n\n<p class=\"wp-block-paragraph\">The account has not failed because you ignored the notice. The <strong>Refresh webmail<\/strong> button leads to a counterfeit login page built to capture your email address and password.<\/p>\n\n\n\n<figure class=\"wp-block-image size-full\"><img decoding=\"async\" width=\"1536\" height=\"1024\" src=\"https:\/\/malwaretips.com\/blogs\/wp-content\/uploads\/2026\/08\/email-configuration-notice-scam.png\" alt=\"Email Configuration Notice phishing email leading to a fake webmail login\" class=\"wp-image-398680\" title=\"\" srcset=\"https:\/\/malwaretips.com\/blogs\/wp-content\/uploads\/2026\/08\/email-configuration-notice-scam.png 1536w, https:\/\/malwaretips.com\/blogs\/wp-content\/uploads\/2026\/08\/email-configuration-notice-scam-300x200.png 300w, https:\/\/malwaretips.com\/blogs\/wp-content\/uploads\/2026\/08\/email-configuration-notice-scam-1024x683.png 1024w\" sizes=\"(max-width: 1536px) 100vw, 1536px\" \/><figcaption class=\"wp-element-caption\">Real mail-server terminology is used as bait for a counterfeit webmail login.<\/figcaption><\/figure>\n\n\n\n<div id=\"mwtad477797506\" class=\"gas_fallback-ad_309746-ad_309691-placement_360521\" style=\"margin-top: 30px;margin-bottom: 30px;\"><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-7750719144850257\" crossorigin=\"anonymous\"><\/script><ins class=\"adsbygoogle\" style=\"display:block;\" data-ad-client=\"ca-pub-7750719144850257\" \ndata-ad-slot=\"4456629336\" \ndata-ad-format=\"auto\" data-full-width-responsive=\"true\"><\/ins>\n<script> \n(adsbygoogle = window.adsbygoogle || []).push({}); \n<\/script>\n<\/div><h2 class=\"wp-block-heading\">Overview<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">The Email Configuration Notice scam is a credential-phishing campaign disguised as an automated message from an IT Systems team. It claims that the recipient&#8217;s mailbox failed authentication because SSL or TLS settings are missing or incorrect.<\/p><div id=\"mwtad2396823863\" class=\"gas_fallback-ad_381396-ad_309691-placement_360566\" style=\"margin-top: 30px;margin-bottom: 30px;\"><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-7750719144850257\" crossorigin=\"anonymous\"><\/script><ins class=\"adsbygoogle\" style=\"display:block;\" data-ad-client=\"ca-pub-7750719144850257\" \ndata-ad-slot=\"1471373341\" \ndata-ad-format=\"auto\" data-full-width-responsive=\"true\"><\/ins>\n<script> \n(adsbygoogle = window.adsbygoogle || []).push({}); \n<\/script>\n<\/div>\n\n\n\n<p class=\"wp-block-paragraph\">To support that story, the email lists <strong>IMAP port 993<\/strong>, <strong>POP3 port 995<\/strong> and <strong>SMTP port 465<\/strong>. Those are legitimate secure-mail port numbers, but their presence does not make the message genuine. The attacker is using accurate technical details as stage dressing.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">The notice has appeared with the subject <strong>Email Configuration Update.<\/strong> and a date of July 29, 2026. It warns that the account may stop working and directs the recipient to <strong>Refresh webmail<\/strong>.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">That link leads to a fake webmail sign-in page. Credentials entered there are sent to criminals, who can then access messages, reset other accounts, search for financial information or impersonate the victim.<\/p><div id=\"mwtad1495877953\" class=\"gas_fallback-ad_309686-ad_309691-placement_360569\" style=\"margin-top: 30px;margin-bottom: 30px;\"><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-7750719144850257\" crossorigin=\"anonymous\"><\/script><ins class=\"adsbygoogle\" style=\"display:block;\" data-ad-client=\"ca-pub-7750719144850257\" \ndata-ad-slot=\"6935453015\" \ndata-ad-format=\"auto\" data-full-width-responsive=\"true\"><\/ins>\n<script> \n(adsbygoogle = window.adsbygoogle || []).push({}); \n<\/script>\n<\/div>\n\n\n\n<p class=\"wp-block-paragraph\">A real email administrator may announce a migration or settings change, but they will normally provide instructions through a known help desk, company portal or device-management process. They do not need users to re-enter mailbox passwords on an unfamiliar public website.<\/p>\n\n\n\n<ul class=\"wp-block-list\"><li>Pretends to be an automated IT Systems alert<\/li><li>Claims authentication or SSL\/TLS configuration has failed<\/li><li>Lists real mail ports to appear knowledgeable<\/li><li>Uses account-disruption warnings to create urgency<\/li><li>Directs the victim to a counterfeit webmail login<\/li><\/ul>\n\n\n\n<div id=\"mwtad1271215903\" class=\"gas_fallback-ad_309747-ad_309691-placement_360587\" style=\"margin-top: 30px;margin-bottom: 30px;\"><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-7750719144850257\" crossorigin=\"anonymous\"><\/script><ins class=\"adsbygoogle\" style=\"display:block;\" data-ad-client=\"ca-pub-7750719144850257\" \ndata-ad-slot=\"9589536513\" \ndata-ad-format=\"auto\" data-full-width-responsive=\"true\"><\/ins>\n<script> \n(adsbygoogle = window.adsbygoogle || []).push({}); \n<\/script>\n<\/div><h2 class=\"wp-block-heading\">Is the Email Configuration Notice Real?<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">No. The message described here is a confirmed phishing scam. The IMAP, POP3 and SMTP values are real standards, but the claim that you must refresh webmail through the email&#8217;s link is false.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">If you are concerned about your mailbox, open your provider&#8217;s website from a saved bookmark or contact the help desk using the number in your company directory. Do not use the notice&#8217;s link or reply address.<\/p><div id=\"mwtad1918083\" class=\"gas_fallback-ad_381401-ad_309691-placement_360573\" style=\"margin-top: 30px;margin-bottom: 30px;\"><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-7750719144850257\" crossorigin=\"anonymous\"><\/script><ins class=\"adsbygoogle\" style=\"display:block;\" data-ad-client=\"ca-pub-7750719144850257\" \ndata-ad-slot=\"5315249587\" \ndata-ad-format=\"auto\" data-full-width-responsive=\"true\"><\/ins>\n<script> \n(adsbygoogle = window.adsbygoogle || []).push({}); \n<\/script>\n<\/div>\n\n\n\n<div id=\"mwtad1887062188\" class=\"gas_fallback-ad_309748-ad_309691-placement_360588\" style=\"margin-top: 30px;margin-bottom: 30px;\"><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-7750719144850257\" crossorigin=\"anonymous\"><\/script><ins class=\"adsbygoogle\" style=\"display:block;\" data-ad-client=\"ca-pub-7750719144850257\" \ndata-ad-slot=\"3906789406\" \ndata-ad-format=\"auto\" data-full-width-responsive=\"true\"><\/ins>\n<script> \n(adsbygoogle = window.adsbygoogle || []).push({}); \n<\/script>\n<\/div><h2 class=\"wp-block-heading\">How the Email Configuration Notice Scam Works<\/h2>\n\n\n\n<h3 class=\"wp-block-heading\">Step 1: The email invents a configuration failure<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">The message says the account failed authentication or lacks secure server settings. This gives a technical explanation for a problem the recipient cannot easily verify.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">Step 2: Real protocol values create credibility<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">Seeing IMAP 993, POP3 995 and SMTP 465 can reassure someone who recognizes those numbers. The facts are genuine, but they are unrelated to whether the supplied link is trustworthy.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">Step 3: The account is placed under time pressure<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">The notice suggests that email access may be limited or interrupted. Because people depend on email for work and account recovery, many will act before asking IT.<\/p><div id=\"mwtad2364903612\" class=\"gas_fallback-ad_381404-ad_309691-placement_381406\" style=\"margin-top: 30px;margin-bottom: 30px;\"><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-7750719144850257\" crossorigin=\"anonymous\"><\/script><ins class=\"adsbygoogle\" style=\"display:block;\" data-ad-client=\"ca-pub-7750719144850257\" \ndata-ad-slot=\"8735619847\" \ndata-ad-format=\"auto\" data-full-width-responsive=\"true\"><\/ins>\n<script> \n(adsbygoogle = window.adsbygoogle || []).push({}); \n<\/script>\n<\/div>\n\n\n\n<h3 class=\"wp-block-heading\">Step 4: Refresh webmail opens a fake login<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">The button hides an external destination. The landing page copies a generic or provider-themed sign-in form and asks for the victim&#8217;s full email address and password.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">Step 5: The attacker collects the credentials<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">Submitting the form sends the data to the phishing operator. A fake error or redirect may follow, causing the victim to assume the refresh simply failed.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">Step 6: The mailbox is used for further fraud<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">The attacker can read private mail, intercept password resets and impersonate the owner. In a workplace account, they may also search for invoices and begin a business email compromise scheme.<\/p><div id=\"mwtad3645145459\" class=\"gas_fallback-ad_360582-ad_309691-placement_360581\" style=\"margin-top: 30px;margin-bottom: 30px;\"><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-7750719144850257\" crossorigin=\"anonymous\"><\/script><ins class=\"adsbygoogle\" style=\"display:block;\" data-ad-client=\"ca-pub-7750719144850257\" \ndata-ad-slot=\"9971336976\" \ndata-ad-format=\"auto\" data-full-width-responsive=\"true\"><\/ins>\n<script> \n(adsbygoogle = window.adsbygoogle || []).push({}); \n<\/script>\n<\/div>\n\n\n\n<div id=\"mwtad1407136253\" class=\"gas_fallback-ad_318930-ad_309691-placement_360589\" style=\"margin-top: 30px;margin-bottom: 30px;\"><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-7750719144850257\" crossorigin=\"anonymous\"><\/script><ins class=\"adsbygoogle\" style=\"display:block;\" data-ad-client=\"ca-pub-7750719144850257\" \ndata-ad-slot=\"3818335085\" \ndata-ad-format=\"auto\" data-full-width-responsive=\"true\"><\/ins>\n<script> \n(adsbygoogle = window.adsbygoogle || []).push({}); \n<\/script>\n<\/div><h2 class=\"wp-block-heading\">What the Port Numbers Actually Mean<\/h2>\n\n\n\n<h3 class=\"wp-block-heading\">IMAP 993<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">IMAP synchronizes messages between a mail server and devices. Port 993 is commonly used for IMAP protected by encryption.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">POP3 995<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">POP3 downloads messages from a server. Port 995 is a standard encrypted POP3 port.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">SMTP 465<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">SMTP is used to send email. Port 465 is commonly associated with SMTP over implicit TLS.<\/p><div id=\"mwtad1794735076\" class=\"gas_fallback-ad_360567-ad_309691-placement_360771\" style=\"margin-top: 30px;margin-bottom: 30px;\"><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-7750719144850257\" crossorigin=\"anonymous\"><\/script><ins class=\"adsbygoogle\" style=\"display:block;\" data-ad-client=\"ca-pub-7750719144850257\" \ndata-ad-slot=\"6224621518\" \ndata-ad-format=\"auto\" data-full-width-responsive=\"true\"><\/ins>\n<script> \n(adsbygoogle = window.adsbygoogle || []).push({}); \n<\/script>\n<\/div>\n\n\n\n<p class=\"wp-block-paragraph\">These values are configuration facts, not proof of identity. Anyone can copy them into a phishing email.<\/p>\n\n\n\n<div id=\"mwtad423462242\" class=\"gas_fallback-ad_381388-ad_309691-placement_381390\" style=\"margin-top: 30px;margin-bottom: 30px;\"><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-7750719144850257\" crossorigin=\"anonymous\"><\/script><ins class=\"adsbygoogle\" style=\"display:block;\" data-ad-client=\"ca-pub-7750719144850257\" \ndata-ad-slot=\"3191649120\" \ndata-ad-format=\"auto\" data-full-width-responsive=\"true\"><\/ins>\n<script> \n(adsbygoogle = window.adsbygoogle || []).push({}); \n<\/script>\n<\/div><h2 class=\"wp-block-heading\">Red Flags in the Fake Configuration Alert<\/h2>\n\n\n\n<ul class=\"wp-block-list\"><li>The message arrives unexpectedly and claims a problem you have not experienced<\/li><li>The sender&#8217;s domain does not exactly match your provider or organization<\/li><li>The warning is generic and does not name a help-desk ticket or administrator<\/li><li>The link destination differs from the official webmail domain<\/li><li>The page asks you to re-enter your password to apply server settings<\/li><li>The message relies on urgency instead of giving verifiable internal support details<\/li><\/ul>\n\n\n\n<div id=\"mwtad752376860\" class=\"gas_fallback-ad_381392-ad_309691-placement_381395\" style=\"margin-top: 30px;margin-bottom: 30px;\"><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-7750719144850257\" crossorigin=\"anonymous\"><\/script><ins class=\"adsbygoogle\" style=\"display:block;\" data-ad-client=\"ca-pub-7750719144850257\" \ndata-ad-slot=\"2944237110\" \ndata-ad-format=\"auto\" data-full-width-responsive=\"true\"><\/ins>\n<script> \n(adsbygoogle = window.adsbygoogle || []).push({}); \n<\/script>\n<\/div><h2 class=\"wp-block-heading\">What to Do If You Received the Email<\/h2>\n\n\n\n<ol class=\"wp-block-list\"><li>Do not click Refresh webmail<\/li><li>Open your webmail normally from a bookmark or typed address<\/li><li>Check your provider&#8217;s service-status page if mail is not working<\/li><li>Forward the message to your IT or security team as an attachment<\/li><li>Report it as phishing and delete it<\/li><\/ol>\n\n\n\n<h2 class=\"wp-block-heading\">What to Do If You Clicked the Link<\/h2>\n\n\n\n<h3 class=\"wp-block-heading\">If you did not enter credentials<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">Close the page and report the email. Clear the phishing site&#8217;s cookies and browsing data. If anything downloaded automatically, do not open it and run a security scan.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">If you entered your password<\/h3>\n\n\n\n<ol class=\"wp-block-list\"><li>Change the mailbox password immediately from the provider&#8217;s real website<\/li><li>Sign out of all active sessions and remove unfamiliar connected applications<\/li><li>Turn on multi-factor authentication<\/li><li>Review recent logins, recovery methods and account-security alerts<\/li><li>Inspect inbox rules and forwarding addresses for unauthorized entries<\/li><li>Check sent and deleted folders for phishing messages sent from your account<\/li><li>Inform your IT team and contacts if the account was used to send messages<\/li><li>Replace the password anywhere else it was reused<\/li><\/ol>\n\n\n\n<h2 class=\"wp-block-heading\">How to Verify a Genuine Mail-Settings Change<\/h2>\n\n\n\n<ul class=\"wp-block-list\"><li>Use the official help center or company service desk<\/li><li>Compare the notice with an announcement in your internal portal<\/li><li>Open account settings directly rather than following email links<\/li><li>Confirm the sender through a known phone number or chat account<\/li><li>Let managed devices receive settings through approved IT tools<\/li><\/ul>\n\n\n\n<h2 class=\"wp-block-heading\">Frequently Asked Questions<\/h2>\n\n\n\n<h3 class=\"wp-block-heading\">Are IMAP 993, POP3 995 and SMTP 465 fake?<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">No. They are real secure-mail port numbers. The scam uses them out of context to lend credibility to a fake password request.<\/p><div id=\"mwtad1917670021\" class=\"gas_fallback-ad_360571-ad_309691-placement_360772\" style=\"margin-top: 30px;margin-bottom: 30px;\"><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-7750719144850257\" crossorigin=\"anonymous\"><\/script><ins class=\"adsbygoogle\" style=\"display:block;\" data-ad-client=\"ca-pub-7750719144850257\" \ndata-ad-slot=\"5867729999\" \ndata-ad-format=\"auto\" data-full-width-responsive=\"true\"><\/ins>\n<script> \n(adsbygoogle = window.adsbygoogle || []).push({}); \n<\/script>\n<\/div>\n\n\n\n<h3 class=\"wp-block-heading\">Will my email stop working if I ignore the notice?<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">This phishing message cannot disable your mailbox. If you have a genuine service problem, verify it independently with your provider or IT department.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">Does clicking the link automatically expose my password?<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">The main theft occurs when credentials are submitted. Close the page if you only viewed it, and scan any file that downloaded. If you entered a password, treat the account as compromised.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">The Bottom Line<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">The Email Configuration Notice is a confirmed phishing lure. It borrows real technical language, but its Refresh webmail link exists to steal credentials\u2014not to repair SSL, TLS or mail-server settings.<\/p><div id=\"mwtad1789050374\" class=\"gas_fallback-ad_360576-ad_309691-placement_360773\" style=\"margin-top: 30px;margin-bottom: 30px;\"><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-7750719144850257\" crossorigin=\"anonymous\"><\/script><ins class=\"adsbygoogle\" style=\"display:block;\" data-ad-client=\"ca-pub-7750719144850257\" \ndata-ad-slot=\"6594472392\" \ndata-ad-format=\"auto\" data-full-width-responsive=\"true\"><\/ins>\n<script> \n(adsbygoogle = window.adsbygoogle || []).push({}); \n<\/script>\n<\/div>\n\n\n\n<p class=\"wp-block-paragraph\">Ignore the pressure, open your account through its official address and contact IT through a trusted channel. If you submitted a password, change it immediately and check the mailbox for hidden access or forwarding rules.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>The Email Configuration Notice scam lists real IMAP, POP3 and SMTP ports, then uses a fake webmail page to steal your password.<\/p>\n","protected":false},"author":50,"featured_media":398680,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"ai_generated_summary":"","footnotes":""},"categories":[49,2839,2842],"tags":[],"class_list":["post-398685","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-scam-reports","category-scam-emails","category-impersonation-scams","masonry-post","generate-columns","tablet-grid-50","mobile-grid-100","grid-parent","grid-50","resize-featured-image"],"_links":{"self":[{"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/posts\/398685","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/users\/50"}],"replies":[{"embeddable":true,"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/comments?post=398685"}],"version-history":[{"count":1,"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/posts\/398685\/revisions"}],"predecessor-version":[{"id":398690,"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/posts\/398685\/revisions\/398690"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/media\/398680"}],"wp:attachment":[{"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/media?parent=398685"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/categories?post=398685"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/tags?post=398685"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}