Advertisement
Top

Tag: email


Cyber-crime, Email security, Malware, Phishing, Security

Oil and Gas Firms Targeted By New LYCEUM Threat Group

August 27, 2019

Via: Threat Post

Researchers have identified a never-before-seen threat group targeting Middle East critical infrastructure organizations with novel malware, sent via spearphishing emails. The threat group, LYCEUM, was observed in 2019 sending spear phishing emails harboring malicious Microsoft Excel attachments to oil and […]


Cyber-crime, Email security, Phishing, Security

Energy Sector Phish Swims Past Microsoft Email Security via Google Drive

August 16, 2019

Via: Threat Post

A targeted spearphishing campaign has hit an organization in the energy sector – after using a savvy trick to get around the company’s Microsoft email security stack. According to Aaron Riley, a researcher from Cofense, the campaign impersonated the CEO […]


Email security, Security

$1.7 million still missing after North Carolina county hit by business email compromise scam

August 1, 2019

Via: Hot for Security

Money intended for the construction of a brand new high school was instead placed in a bank account controlled by scammers by officials of a North Carolina county. Cabarrus County in North Carolina, home to NASCAR races at the Charlotte […]


Email security, Security

Could nation-state hackers target your email? Microsoft thinks so

July 18, 2019

Via: TechRadar

Microsoft has shown off the first voting system to make use of its ElectionGuard technology, which is designed to prevent tampering with elections, while revealing some alarming statistics about how many normal people – not just business customers – have […]


Phishing

A Spate of University Breaches Highlight Email Threats in Higher Ed

June 18, 2019

Via: Threat Post

Oregon State University announced Friday that hackers potentially made off with 636 student records and family records of students containing personally identifiable information (PII), after a successful email attack in early May. This comes on the heels of email-based breaches […]


Email security, Mobile, Privacy protection, Security

Apple Pledges Privacy, Beefs Up Security

June 13, 2019

Via: Dark Reading

Whether it’s from Apple fans, embedded marketing people, or actual developers, applause is an oft-heard feature of any keynote at Apple’s Worldwide Developers Conference. Yet the loudest applause at this year’s conference came not for some shiny feature, but for […]


Email security, Hacker, Security, Threats & Malware

Ransomware attack paralyses Lake City email, landlines and credit card services

June 12, 2019

Via: Hot for Security

Lake City has warned citizens that administrative systems, including email and credit card systems, are down following a ransomware attack on the Florida municipality. The attack, called “Triple Threat” in a press release issued by the city, reportedly combined three […]


Cyber-crime, Email security, Malware, Security, Vulnerabilities

Microsoft Warns of Email Attacks Executing Code Using an Old Bug

June 11, 2019

Via: Threat Post

Microsoft is warning of a fresh email campaign that distributes malicious RTF files boobytrapped with an exploit dating back to a 2017 vulnerability, CVE-2017-11882. The exploit allows attackers to automatically run malicious code without requiring user interaction. “The CVE-2017-11882 vulnerability […]


Cyber-crime, Email security, Identity theft, Security

‘Lone Wolf’ Scammer Built a Multifaceted BEC Cybercrime Operation

June 11, 2019

Via: Dark Reading

This wasn’t the first time the chief financial officer of email security vendor Agari had been targeted in a business email compromise (BEC) scam. As with the first incident in August 2018, three months later Agari’s software tool flagged a […]


Email security, Security, Threats & Malware, Vulnerabilities

Vulnerability Found in Millions of Email Systems

June 10, 2019

Via: Dark Reading

Security researchers at Qualys Common discovered a remote command execution vulnerability in older versions of mail transfer agent (MTA) Exim — a critical, open source piece of the email infrastructure in many organizations. An MTA functions much like a router […]


Cyber-crime, Email security, Phishing, Security

How effective are login challenges at preventing Google account takeovers?

May 21, 2019

Via: Help Net Security

Despite implementation bugs that might affect the security of physical security keys, they are the strongest protection against phishing currently available, Google maintains. On-device prompts and SMS codes are also extremely successful at blocking account hijacking attacks effected via automated […]


Mobile security, Network security

How Cyber-Secure Are Business Travelers? New Report Says Not Very

May 21, 2019

Via: Security Intelligence

I travel frequently for business — to industry conferences such as RSA Conference and Black Hat and meeting with clients. Whenever I travel, I bring my work laptop, my personal cellphone enabled with work email and calendar, and, of course, […]


Email security, Malware, Phishing

The lurking danger of hacked email reply chains

May 14, 2019

Via: Help Net Security

Although phishing has been around in various forms since the 1990s, recent news has shown that it continues to evolve – and remains a major threat. These days, phishing tactics are so sophisticated it can be difficult to spot a […]


Cyber-crime, Email security, Phishing, Security

Which employees receive the most highly targeted email-borne threats?

April 24, 2019

Via: Help Net Security

Workers in R&D/Engineering are the most heavily targeted group of employees within organizations, a new Proofpoint report says, and lower-level employees are at a higher risk of email-borne cyber threats than higher-level management roles and executives. Who is being attacked? […]


Email security, Network security, Security

Hackers could read users’ Outlook, Hotmail, and MSN email via compromised Microsoft support account

April 15, 2019

Via: Hot for Security

Over the weekend Microsoft confirmed that a “limited” number of Outlook.com webmail accounts had been compromised, allowing hackers to access users’ email addresses, folder names, subject lines, and the names of other email addresses with whom they corresponded. The tech […]


Email security, Phishing

New, Improved BEC Campaigns Target HR and Finance

April 5, 2019

Via: Dark Reading

Spearphishing campaigns from new and established business email compromise (BEC) gangs are stealing from companies using multiple tactics. A wave of business email compromise (BEC) campaigns targeting direct-deposit payroll information demonstrate once again that sophisticated technical skills aren’t necessary when […]


Email security, Phishing

Attack Campaign Experiments with Rapid Changes in Email Lure Content

February 22, 2019

Via: Dark Reading

It’s like polymorphic behavior – only the changes are in the email lures themselves, with randomized changes to headers, subject lines, and body content. A new email Trojan campaign spotted by security researchers has added another twist in evasive attacker […]


Email security, Phishing

Phishers’ new trick for bypassing email URL filters

February 20, 2019

Via: Help Net Security

Phishers have come up with another trick to make Office documents carrying malicious links undetectable by many e-mail security services: they delete the links from the document’s relationship file (xml.rels). The trick has been spotted being used in a email […]


Network security

Google Tackles Gmail Spam with Tensorflow

February 7, 2019

Via: Dark Reading

Tensorflow, Google’s open-source machine learning framework, has been used to block 100 million spam messages. Google reports Gmail is blocking 100 million extra spam emails per day following the implementation of Tensorflow, its open source, machine-learning framework, to supplement existing […]


Email security, Identity theft, Network security

Cybercriminals Exploit Gmail Feature to Scale Up Attacks

February 6, 2019

Via: Dark Reading

Criminals are taking advantage of Gmail’s ‘dots don’t matter’ feature to set up multiple fraudulent accounts on websites, using variations of the same email address, Agari says. Some cybercriminals are taking advantage of a long-standing feature in Google Gmail designed […]