Konstantin Weddige on Nostr: This is due to something I call #KoboldLetters. By cleverly (mis)using CSS, attackers ...
This is due to something I call #KoboldLetters. By cleverly (mis)using CSS, attackers can display completely different emails to different recipients.
The problems with HTML and CSS in emails have been known for a long time, but the security implications have usually been underestimated or actively downplayed. That's why I wrote an article explaining how HTML emails can be used to deceive recipients into becoming part of an sophisticated #phishing attack.
https://lutrasecurity.com/en/articles/kobold-letters/
The problems with HTML and CSS in emails have been known for a long time, but the security implications have usually been underestimated or actively downplayed. That's why I wrote an article explaining how HTML emails can be used to deceive recipients into becoming part of an sophisticated #phishing attack.
https://lutrasecurity.com/en/articles/kobold-letters/