ZeroFont Technique – An easy way to bypass office 365

Phishing activities are becoming a flop with growing Artificial Intelligence powered phishing detection technologies. Email services and web security scanners use these anti phishing mechanisms to detect malicious emails. One such attempt is implemented by Microsoft in their Office 365 version to safeguard users from harmful emails and links. In Microsoft Office 365 Advanced Threat Protection (ATP), a cloud based email filtering service is used to protect users and their organizations against malware and viruses.



Like Microsoft Office 365, many emails and web security services are based on natural language processing and to identify malicious or phishing emails faster.

However cyber criminals can’t take a back seat! Recent news reveals that email scammers and cyber crooks have come up with a new technique that would allow their phishing emails to bypass the protection implemented by Microsoft in office 365. This new technique evolved by maleficent developers involves manipulating font sizes to Zerofont.

Dubbed ZeroFont, is a technique that involves inserting hidden characters with the font size zero between the indicator texts to make it invisible to the naked eyes, thus tricking the Microsoft’s Office 365 platform that can process only natural language.

These inserted hidden characters are embedded within the HTML code <span style=”FONT-SIZE: 0px”> to make the font size zero, making them invisible to the email recipient.

Read Full Article

Comments

Popular posts from this blog

How to remove Speedtest-guide.com redirect from your system

The novel DNS protocol helps Mozart Malware evade detection

How to remove ZUpdater.exe Trojan from your system?