Talos Takes

Why attackers are using hidden text salting to evade email filters

Cisco Talos

In this episode Hazel chats with Omid Mirzaei, a security research lead in the email threat research team at Cisco Talos. 

Omid and several Talos teammates recently released a blog on hidden text salting (or poisoning) within emails and how attackers are increasingly using this technique to evade detection, confuse email scanners, and essentially try and get phishing emails to land in people’s inboxes. 

Hidden text salting is a simple yet effective technique for bypassing email parsers, confusing spam filters, and evading detection engines that rely on keywords. The idea is to include some characters into the HTML source of an email that are not visually recognizable.

For more, head to the Talos blog 


People on this episode