Ptechhub
  • News
  • Industries
    • Enterprise IT
    • AI & ML
    • Cybersecurity
    • Finance
    • Telco
  • Brand Hub
    • Lifesight
  • Blogs
No Result
View All Result
  • News
  • Industries
    • Enterprise IT
    • AI & ML
    • Cybersecurity
    • Finance
    • Telco
  • Brand Hub
    • Lifesight
  • Blogs
No Result
View All Result
PtechHub
No Result
View All Result

Cybercriminals Exploit CSS to Evade Spam Filters and Track Email Users’ Actions

The Hacker News by The Hacker News
March 17, 2025
Home Cybersecurity
Share on FacebookShare on Twitter


Mar 17, 2025Ravie LakshmananWeb Security / Cyber Threat

Malicious actors are exploiting Cascading Style Sheets (CSS), which are used to style and format the layout of web pages, to bypass spam filters and track users’ actions.

That’s according to new findings from Cisco Talos, which said such malicious activities can compromise a victim’s security and privacy.

“The features available in CSS allow attackers and spammers to track users’ actions and preferences, even though several features related to dynamic content (e.g., JavaScript) are restricted in email clients compared to web browsers,” Talos researcher Omid Mirzaei said in a report published last week.

The insights build upon previous findings from the cybersecurity company about a spike in email threats leveraging hidden text salting in the second half of 2024 with an aim to get around email spam filters and security gateways.

This technique particularly entails using legitimate features of the Hypertext Markup Language (HTML) and CSS to include comments and irrelevant content that are invisible to the victim when rendered in an email client but can trip up parsers and detection engines.

Cybersecurity

The latest analysis from Talos has found that threat actors are using CSS properties like text_indent and opacity to conceal irrelevant content from being displayed in the email body. The end goal of these campaigns, in some cases, is to redirect the email recipient to a phishing page.

CSS to Evade Spam Filters

Furthermore, it has emerged that CSS offers opportunities for threat actors to monitor user behavior via spam emails by embedding CSS properties such as the @media CSS at-rule, thus opening the door to potential fingerprinting attacks.

“This abuse can range from identifying recipients’ font and color scheme preferences and client language to even tracking their actions (e.g., viewing or printing emails),” Mirzaei explained.

“CSS provides a wide range of rules and properties that can help spammers and threat actors fingerprint users, their webmail or email client, and their system. For example, the media at-rule can detect certain attributes of a user’s environment, including screen size, resolution, and color depth.”

To mitigate the risk posed by such threats, it’s recommended to implement advanced filtering mechanisms to detect hidden text salting and content concealment, as well as use email privacy proxies.

Found this article interesting? Follow us on Twitter  and LinkedIn to read more exclusive content we post.





Source link

Tags: computer securitycyber attackscyber newscyber security newscyber security news todaycyber security updatescyber updatesdata breachhacker newshacking newshow to hackinformation securitynetwork securityransomware malwaresoftware vulnerabilitythe hacker news
The Hacker News

The Hacker News

Next Post
Stocks making the biggest moves premarket: Affirm, Netflix, Incyte, Norwegian Cruise Line & more

Stocks making the biggest moves premarket: Affirm, Netflix, Incyte, Norwegian Cruise Line & more

Recommended.

Banks turn to AI supervisors as agent use surges

Banks turn to AI supervisors as agent use surges

November 12, 2025
Autozi Internet Technology (Global) Ltd. Announces 50 for 1 Share Consolidation

Autozi Internet Technology (Global) Ltd. Announces 50 for 1 Share Consolidation

December 9, 2025

Trending.

Wesco Declares Quarterly Dividend on Common Stock

Wesco Declares Quarterly Dividend on Common Stock

December 1, 2025
HeyGears Launches Reflex 2 Series 3D Printers – Enabling Users to Go Beyond Prototypes and Start Production

HeyGears Launches Reflex 2 Series 3D Printers – Enabling Users to Go Beyond Prototypes and Start Production

October 24, 2025
⚡ THN Weekly Recap: New Attacks, Old Tricks, Bigger Impact

⚡ THN Weekly Recap: New Attacks, Old Tricks, Bigger Impact

March 10, 2025
Bloody Wolf Targets Uzbekistan, Russia Using NetSupport RAT in Spear-Phishing Campaign

Bloody Wolf Targets Uzbekistan, Russia Using NetSupport RAT in Spear-Phishing Campaign

February 9, 2026
Passwd: A walkthrough of the Google Workspace Password Manager

Passwd: A walkthrough of the Google Workspace Password Manager

December 23, 2025

PTechHub

A tech news platform delivering fresh perspectives, critical insights, and in-depth reporting — beyond the buzz. We cover innovation, policy, and digital culture with clarity, independence, and a sharp editorial edge.

Follow Us

Industries

  • AI & ML
  • Cybersecurity
  • Enterprise IT
  • Finance
  • Telco

Navigation

  • About
  • Advertise
  • Privacy & Policy
  • Contact

Subscribe to Our Newsletter

  • About
  • Advertise
  • Privacy & Policy
  • Contact

Copyright © 2025 | Powered By Porpholio

No Result
View All Result
  • News
  • Industries
    • Enterprise IT
    • AI & ML
    • Cybersecurity
    • Finance
    • Telco
  • Brand Hub
    • Lifesight
  • Blogs

Copyright © 2025 | Powered By Porpholio