Threat Actors Ramp Up Use of Encoded URLs to Bypass Secure Email
ID: 2ff8c5b1-7342-5de6-ac3a-bd0a0d149b92
STIX ID: report--2ff8c5b1-7342-5de6-ac3a-bd0a0d149b92
Feed Name: Dark Reading
Threat Score
Cofense and security reporting detail a growing tactic where attackers use Secure Email Gateway (SEG) URL encoding/link-rewriting to hide malicious destinations from recipient email security products, enabling phishing/malicious-link delivery to bypass defenses; several SEG vendors (VIPRE, Bitdefender, Hornet, Barracuda) have been observed abused, and mitigation focuses on user awareness since many SEGs do not adequately scan already-encoded links.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
