Tech

Hidden text “salting” is letting hackers craft devious email attacks to evade detection

Share
Share


  • Security researchers are warning about “hidden text salting” in emails
  • Hackers can hide parts of the text to confuse email scanners
  • The hidden text helps the email pass the scans and land in the inbox

Hackers are increasingly using “hidden text salting”, or “poisoning” techniques, to work around email security measures and get phishing messages to land in people’s inboxes.

A new in-depth guide published by cybersecurity researchers from Cisco Talos outlines how cybercriminals are abusing HTML and CSS properties in email messages, setting the width of some elements to 0, and using the “display: hidden” feature to hide some content from the victims. They are also inserting zero-width space (ZWSP) and zero-width non-joiner (ZWNJ) characters, and ultimately hiding the true email content, by embedding irrelevant language.

Share

Leave a comment

Leave a Reply

Your email address will not be published. Required fields are marked *

Related Articles
Microsoft is paying out some huge rewards for spotting AI security issues
Tech

Microsoft is paying out some huge rewards for spotting AI security issues

Microsoft has upped the ante in its bug bounty program Payouts can...

Bright up your life with LG’s dazzling G5 OLED
Tech

Bright up your life with LG’s dazzling G5 OLED

Techradar has reviewed tons of TVs, and again and again its tech...

Commvault backup systems have an extremely worrying security issue, so patch now
Tech

Commvault backup systems have an extremely worrying security issue, so patch now

A critical-severity security flaw was found in Commvault Command Center It allows...