Complex Mathematics

Phishing emails are getting smarter – and using some new tricks to snare victims




  • Barracuda says Tycoon now offers new ways to hide malicious links in emails
  • URL encoding, fake CAPTCHAs, domain splits, and other techniques were spotted in the wild
  • The researchers urge businesses use a multi-layered approach to security

Tycoon, a popular phishing kit responsible for the majority of email-borne attacks these days, has apparently been updated with new techniques to help threat actors hide malware and malicious links in email messages.

Security researchers Barracuda released an in-depth report covering numerous new tactics being observed in the wild, including URL encoding, fake CAPTCHAs, Redundant Protocol Prefix technique, using the ‘@’ symbol, and subdomain split abuse.



Source link