Close Menu
    Main Menu
    • Home
    • News
    • Tech
    • Robotics
    • ML & Research
    • AI
    • Digital Transformation
    • AI Ethics & Regulation
    • Thought Leadership in AI

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    New ‘Zero-Click on’ AI Flaw Present in Microsoft 365 Copilot, Exposing Information

    June 13, 2025

    Why the brand new iPhone and Mac software program design are the least of Apple’s issues

    June 13, 2025

    Ledger Dwell Software program-Set up-Information-on-Mac | Jacob Morgan | Finest-Promoting Writer, Speaker, & Futurist | Management | Way forward for Work

    June 13, 2025
    Facebook X (Twitter) Instagram
    UK Tech InsiderUK Tech Insider
    Facebook X (Twitter) Instagram
    UK Tech InsiderUK Tech Insider
    Home»AI Ethics & Regulation»Alternate options to Microsoft Outlook webmail come below assault in Europe
    AI Ethics & Regulation

    Alternate options to Microsoft Outlook webmail come below assault in Europe

    Declan MurphyBy Declan MurphyMay 17, 2025No Comments2 Mins Read
    Facebook Twitter Pinterest Telegram LinkedIn Tumblr Email Reddit
    Alternate options to Microsoft Outlook webmail come below assault in Europe
    Share
    Facebook Twitter LinkedIn Pinterest Email Copy Link



    “Over the previous two years, webmail servers resembling Roundcube and Zimbra have been a significant goal for a number of espionage teams resembling Sednit, GreenCube, and Winter Vivern,” mentioned ESET’s Faou. “As a result of many organizations don’t hold their webmail servers updated, and since the vulnerabilities could be triggered remotely by sending an e mail message, it is vitally handy for attackers to focus on such servers for e mail theft.”

    A very powerful factor for CISOs is to maintain the webmail functions updated, he mentioned. “Whereas we do point out in our analysis the usage of zero-day vulnerabilities, in a lot of the incidents we analyzed, solely recognized vulnerabilities, which had been patched for months, have been used. One other hardening avenue, however most likely too excessive for many organizations, is to forbid HTML content material in emails, and simply show uncooked textual content. Nonetheless, this could stop the use some functionalities resembling textual content formatting (daring, italic, and so on.) or the inclusion of hyperlinks.”

    Webmail could be described as an internet site that shows untrusted HTML content material in a browser, he mentioned. Whereas most webmail methods sanitize the content material to take away dangerous HTML parts, which may execute JavaScript code, ESET’s analysis exhibits that the sanitizers are usually not with out flaws and that attackers are capable of bypass them. Consequently, he mentioned, by sending a specifically crafted e mail, attackers are capable of execute arbitrary JavaScript code within the context of their goal’s browser. Whereas this doesn’t result in the compromise of the pc, he identified, executing JavaScript code within the context of the browser permits to steal data from the mailbox, for instance, emails or the record of contacts.

    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Declan Murphy
    • Website

    Related Posts

    New ‘Zero-Click on’ AI Flaw Present in Microsoft 365 Copilot, Exposing Information

    June 13, 2025

    WordPress Websites Turned Weapon: How VexTrio and Associates Run a World Rip-off Community

    June 13, 2025

    Cybercriminals Exploiting Expired Discord Invite Hyperlinks to Deploy Multi-Stage Malware

    June 12, 2025
    Top Posts

    New ‘Zero-Click on’ AI Flaw Present in Microsoft 365 Copilot, Exposing Information

    June 13, 2025

    How AI is Redrawing the World’s Electrical energy Maps: Insights from the IEA Report

    April 18, 2025

    Evaluating the Finest AI Video Mills for Social Media

    April 18, 2025

    Utilizing AI To Repair The Innovation Drawback: The Three Step Resolution

    April 18, 2025
    Don't Miss

    New ‘Zero-Click on’ AI Flaw Present in Microsoft 365 Copilot, Exposing Information

    By Declan MurphyJune 13, 2025

    Cybersecurity agency Purpose Labs has uncovered a severe new safety drawback, named EchoLeak, affecting Microsoft…

    Why the brand new iPhone and Mac software program design are the least of Apple’s issues

    June 13, 2025

    Ledger Dwell Software program-Set up-Information-on-Mac | Jacob Morgan | Finest-Promoting Writer, Speaker, & Futurist | Management | Way forward for Work

    June 13, 2025

    NVIDIA Releases AI Fashions, Developer Instruments to Advance AV Ecosystem

    June 13, 2025
    Stay In Touch
    • Facebook
    • Twitter
    • Pinterest
    • Instagram
    • YouTube
    • Vimeo

    Subscribe to Updates

    Get the latest creative news from SmartMag about art & design.

    UK Tech Insider
    Facebook X (Twitter) Instagram
    • About Us
    • Contact Us
    • Privacy Policy
    • Terms Of Service
    • Our Authors
    © 2025 UK Tech Insider. All rights reserved by UK Tech Insider.

    Type above and press Enter to search. Press Esc to cancel.