logo

CyberheistNews Vol 16 #14 [Heads Up] Clever Hackers Use Custom Fonts to Bypass AI Defenses

ID: d1447367-283b-55b0-ad41-a80da5503e6a

STIX ID: report--d1447367-283b-55b0-ad41-a80da5503e6a

Feed Name: KnowBe4 Blog

Threat Score
82/100

Date Published: 2026-04-07

Date Updated: 2026-04-28

Author: KnowBe4 Team

...
...

**Executive summary:** Researchers warn that adversaries can use custom fonts and CSS to render different text to human users than what's present in the DOM, allowing phishing pages to evade AI web assistants; separately, attackers abused a maintainer account to insert a malicious dependency into the widely used Axios ecosystem that profiled systems and deployed a remote-access trojan before wiping artifacts, and researchers also observed surges in phishing campaigns and elaborate social-engineering scams exploiting geopolitical events and fabricated law-enforcement setups.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.