logo

Threat Actors Ramp Up Use of Encoded URLs to Bypass Secure Email

ID: 2ff8c5b1-7342-5de6-ac3a-bd0a0d149b92

STIX ID: report--2ff8c5b1-7342-5de6-ac3a-bd0a0d149b92

Feed Name: Dark Reading

Threat Score
55/100

Date Published: 2024-07-17

Date Updated: 2026-04-21

Author: Jai Vijayan, Contributing Writer

...
...

Cofense and security reporting detail a growing tactic where attackers use Secure Email Gateway (SEG) URL encoding/link-rewriting to hide malicious destinations from recipient email security products, enabling phishing/malicious-link delivery to bypass defenses; several SEG vendors (VIPRE, Bitdefender, Hornet, Barracuda) have been observed abused, and mitigation focuses on user awareness since many SEGs do not adequately scan already-encoded links.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.