Pretnje
13 direktnih pogodaka-
№ 028
Business Email Compromise Business email compromise is not an ordinary fake email. The attacker breaks into business correspondence, or imitates it well enough that somebody in the compa …pretnja · social eng.
-
№ 068
Evil Twin A fake captive portal asks for a business email and password to grant internet access.pretnja · physical / IoT
-
№ 004
Keylogger Software keylogger installed via an infected email attachmentpretnja · malware
-
№ 026
Phishing An email with an attachment dressed up as an invoice or a purchase order, which actually carries malware.pretnja · social eng.
-
№ 031
Pretexting … , LinkedIn, the company website, job adverts, old emails and the habits of the organization. The goal can be a password, a document, access to a room, or a conf …pretnja · social eng.
-
№ 072
Prompt injection … ontent they are processing. When a model reads an email, a document, a page, a ticket or a message, the attacker can put text into that content which reads like …pretnja · AI / ML
-
№ 034
QR phishing - Quishing … ward because it hides the destination well. In an email or a document there is no ordinary link for a filter to read, and the user often carries on working on t …pretnja · social eng.
-
№ 014
Remote access trojan - RAT A Trojan from an email activates a RAT; the attacker has access to the machine for days, watching what happens and choosing what to do next.pretnja · malware
-
№ 054
Service Abuse … reset function is used to send a large number of emails to one person or one domain.pretnja · availability
-
№ 027
Spear Phishing An email that refers to a real, recent internal meeting, with the minutes attached — and the attachment carrying malware.pretnja · social eng.
-
№ 069
USB Drop Attack … of the network protection. The attacker sends no email and jumps no company firewall; they rely on the victim carrying it in themselves, behind every technical …pretnja · physical / IoT
-
№ 036
Watering Hole Attack … ply chains. The user is not clicking a suspicious email; they are visiting a familiar site. That is exactly why the attack can stay under the radar for a long t …pretnja · social eng.
-
№ 029
voice phishing - Vishing … ing is phishing over the telephone. Instead of an email and a link, the attacker uses a voice, a phone number and the pressure of the moment. They present thems …pretnja · social eng.
Tehnike
11 direktnih pogodaka-
№ 009
AiTM A municipal employee gets an email with a link to a 'portal login'; the page is a proxy that forwards everything to the real service and captures the session to …tehnika · initial access
-
№ 003
Credential Abuse Using leaked passwords to access an email accounttehnika · initial access
-
№ 031
Data Exfiltration … gh encrypted channels, legitimate cloud services, email, or even physical media.tehnika · exfiltration / impact
-
№ 038
Malware Delivery Infected email attachment disguised as an invoicetehnika · C2
-
№ 028
Network Sniffing Can capture credentials, session tokens, email content, and API keys.tehnika · discovery
-
№ 030
OSINT theHarvester for collecting email addressestehnika · discovery
-
№ 013
Payload Obfuscation … ross all attack phases, from malware delivery via email to communication with command servers.tehnika · execution
-
№ 001
Phishing … ishing as a technique involves sending fraudulent emails, SMS messages, or chat messages to trick the victim into clicking a malicious link, opening an infected …tehnika · initial access
-
№ 033
Service Abuse … ing a password reset feature to send thousands of emails to a victimtehnika · exfiltration / impact
-
№ 002
Social Engineering … the weakest link. It can be conducted via phone, email, in person, or through a combination of channels.tehnika · initial access
-
№ 005
Watering Hole Effective against groups with strict email security but free web access.tehnika · initial access
Odbrane
7 direktnih pogodaka-
№ 002
Email Security Email security encompasses technologies that filter inbound and outbound messages to prevent phishing, malware delivery, and business email compromise. It opera …odbrana · endpoints
-
№ 007
SPF/DKIM/DMARC By default, anyone can put your domain in the sender field — that's how spoofed mail 'from the director' works. SPF, DKIM, and DMARC are three records you publish for your domain that let a recipient check whether mail claiming to be from you actually came from your systems. SPF says which servers may send for you, DKIM signs the message, and DMARC tells the recipient what to do with mail that fails the check and sends you reports.odbrana · endpoints
-
№ 006
Browser Isolation Executing web content in an isolated environment separate from the local system.odbrana · endpoints
-
№ 034
DLP … an employee attaching a client list to a private email, copying a file with personal data to a USB, or pasting a database into a chat. It works by recognizing …odbrana · resilience
-
№ 030
Data Encryption In transit: TLS 1.3 for web, email, and API communication.odbrana · resilience
-
№ 038
Phishing Simulations Regular testing of employees with simulated phishing messages.odbrana · people
-
№ 004
XDR … d Response) unifies data from endpoints, network, email, and cloud.odbrana · endpoints