QR-code phishing is growing fast because it moves the scam out of text filters and into the scan step, where a personal phone may become the attacker’s real launchpad.
A phishing run dressed up as shipping notices and tax-audit mail shows how attackers can turn everyday business trust into a credential-theft pipeline.
AegisAI has raised $36 million, lifting its total funding to $49 million, in a round aimed at AI-powered email security and backed by Battery Ventures, Accel, and Foundation Capital.
A view-triggered flaw in Zimbra Collaboration Suite shows how one vulnerable inbox interface can put mail history, credentials, and internal directories within reach of a determined operator.
A zero-day in Zimbra Classic UI let a malicious message run code inside the webmail session, shifting the attack goal from inbox access to broader account and identity theft.
A phishing campaign tied to a Zimbra zero-day shows how one compromised webmail layer can put months of correspondence and sensitive material at risk.
Defender for Office 365 is now being used to blunt prompt injection, a reminder that enterprise email is becoming an input channel for assistants as much as a message stream for humans.
Defender for Office 365 is now inspecting inbound email for hidden AI instructions before they can reach a mailbox or be consumed by Microsoft 365 Copilot.
A post-incident review points to a stubborn pattern: some organizations restore operations after ransomware, but leave email and patching weaknesses unresolved.
A critical refresh for Zimbra closes command injection, XSS, restriction bypass, and SSRF flaws, underscoring how email systems can fail across browser, policy, and server boundaries at once.
A reported espionage campaign tied to APT42 shows how AI-assisted phishing, cloud abuse, and PowerShell-heavy tooling can turn a single lure into access to government identities and sensitive mailboxes.
Phishing stays effective because it abuses trust at scale, moving through email and other channels while defenders are forced to combine awareness, filtering, and stronger authentication.
Zimbra has patched a critical bug tied to crafted emails, and the security lesson is blunt: when webmail renders hostile content inside a logged-in session, the attacker may not need anything more than a click.
A reported spear-phishing campaign borrowed real event details, then used an ISO container and process injection to move RokRAT onto Windows systems.
A security update for Roundcube 1.7.2 shows how browser-facing mail code can turn plain text, URL fetching, and legacy attachments into high-risk attack surfaces.
A ghost-phishing campaign is reportedly hiding malicious pages until they decrypt inside the browser, a trick that can leave traditional email and URL checks staring at an empty frame.
A webinar promotion about email security points to a larger problem: inbox controls help, but phishing now lives across identity, authentication, and user trust layers.
A new wave of university targeting shows why browser-based mail portals are no longer just communications tools - they can become the first trusted step into a much larger network.
A suspected China-aligned cluster is tied to Roundcube exploitation, showing how a browser-side XSS bug can become a gateway into university mail infrastructure.
A shared ISP email platform became the pressure point in a reported cyberattack, showing how one software flaw can turn routine mailbox infrastructure into a large-scale identity risk.