Exploring Content Concealment in Email

Fuente: arXiv
Guardado en:
Detalles Bibliográficos
Autores principales: Betts, Lucas, Biddle, Robert, Lottridge, Danielle, Russello, Giovanni
Formato: Preprint
Publicado: 2024
Materias:
Acceso en línea:
Etiquetas: Agregar Etiqueta
Sin Etiquetas, Sea el primero en etiquetar este registro!
_version_ 1866909349775933440
author Betts, Lucas
Biddle, Robert
Lottridge, Danielle
Russello, Giovanni
author_facet Betts, Lucas
Biddle, Robert
Lottridge, Danielle
Russello, Giovanni
contents The never-ending barrage of malicious emails, such as spam and phishing, is of constant concern for users, who rely on countermeasures such as email filters to keep the intended recipient safe. Modern email filters, one of our few defence mechanisms against malicious emails, are often circumvented by sophisticated attackers. This study focuses on how attackers exploit HTML and CSS in emails to conceal arbitrary content, allowing for multiple permutations of a malicious email, some of which may evade detection by email filters. This concealed content remains undetected by the recipient, presenting a serious security risk. Our research involved developing and applying an email sampling and analysis procedure to a large-scale dataset of unsolicited emails. We then identify the sub-types of concealment attackers use to conceal content and the HTML and CSS tricks employed.
format Preprint
id arxiv_https___arxiv_org_abs_2410_11169
institution arXiv
publishDate 2024
record_format arxiv
spellingShingle Exploring Content Concealment in Email
Betts, Lucas
Biddle, Robert
Lottridge, Danielle
Russello, Giovanni
Cryptography and Security
Networking and Internet Architecture
The never-ending barrage of malicious emails, such as spam and phishing, is of constant concern for users, who rely on countermeasures such as email filters to keep the intended recipient safe. Modern email filters, one of our few defence mechanisms against malicious emails, are often circumvented by sophisticated attackers. This study focuses on how attackers exploit HTML and CSS in emails to conceal arbitrary content, allowing for multiple permutations of a malicious email, some of which may evade detection by email filters. This concealed content remains undetected by the recipient, presenting a serious security risk. Our research involved developing and applying an email sampling and analysis procedure to a large-scale dataset of unsolicited emails. We then identify the sub-types of concealment attackers use to conceal content and the HTML and CSS tricks employed.
title Exploring Content Concealment in Email
topic Cryptography and Security
Networking and Internet Architecture
url https://arxiv.org/abs/2410.11169