Tech

Hidden text “salting” is letting hackers craft devious email attacks to evade detection

Share
Share


  • Security researchers are warning about “hidden text salting” in emails
  • Hackers can hide parts of the text to confuse email scanners
  • The hidden text helps the email pass the scans and land in the inbox

Hackers are increasingly using “hidden text salting”, or “poisoning” techniques, to work around email security measures and get phishing messages to land in people’s inboxes.

A new in-depth guide published by cybersecurity researchers from Cisco Talos outlines how cybercriminals are abusing HTML and CSS properties in email messages, setting the width of some elements to 0, and using the “display: hidden” feature to hide some content from the victims. They are also inserting zero-width space (ZWSP) and zero-width non-joiner (ZWNJ) characters, and ultimately hiding the true email content, by embedding irrelevant language.

Share

Leave a comment

Leave a Reply

Your email address will not be published. Required fields are marked *

Related Articles
Perplexity AI’s Comet browser will streak across the web this month
Tech

Perplexity AI’s Comet browser will streak across the web this month

Perplexity AI’s new WhatsApp integration offers instant fact-checking without leaving the app...

Exploring the ‘Jekyll-and-Hyde tipping point’ in AI
Tech

Exploring the ‘Jekyll-and-Hyde tipping point’ in AI

Attention head (‘AI’) shown in basic form, generates a response to a...