Sep 7 / Admin

New Scam Alert: Fraudsters Hide Phishing Words Email Filters Look For to Get To Your Inbox

Bleeping Computer reported:  

Threat actors have adopted the ASCII smuggling technique in phishing campaigns, using invisible Unicode characters to evade email security filters.

In this campaign, the attacker inserts an invisible Unicode character inside finance-related lure words to split them.

In doing so, a keyword like ‘funding’ becomes something like ‘fun[invisible character]ding’ and evades email filters that rely on word lists to detect suspicious or malicious messages.

Find the original article here.
 
Key Takeaway:  Review the email to see if there are any red flags.  Use an AI Tool to help.  Check out the training session to see how to use Microsoft Copilot to spot red flags in an email or your inbox. 

Enroll in Training Sessions:  Last Thursday of Every Month is Training on Frauds and New Scam Alerts and How to Combat
Click Image to Enlarge