Abusing with style: Leveraging cascading style sheets for evasion and tracking
ID: 12d3df1e-6ae9-5324-a55f-9b7f1a600d09
STIX ID: report--12d3df1e-6ae9-5324-a55f-9b7f1a600d09
Feed Name: Cisco Talos
Cisco Talos reports on recent abuses of CSS in phishing and spam emails to evade detection and track recipients, including hidden text salting (using properties like text-indent, opacity, clip/clip-path), HTML smuggling, and CSS-based tracking and fingerprinting via media queries, print/color-scheme/client detection, and font-based OS inference, observed from late 2024 to February 2025; the post recommends advanced filtering and email privacy proxies to mitigate both security evasion and privacy risks.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
