#EmailSecurity

SMTP Flaws Risk Email Security

Security researchers at PayPal have uncovered three new SMTP smuggling attack techniques that exploit misconfigurations and design flaws in at least 50 email-hosting providers. These techniques allow attackers to spoof emails from over 20 million trusted domains, bypassing essential security protocols like SPF, DKIM, and DMARC. As a result, malicious …

Read More

Critical Exim Flaw Exposes Mail Servers

A critical issue in Exim mail transfer agent (MTA) has left over 1.5 million servers unpatched, posing significant security risks. Tracked as CVE-2024-39929, the flaw allows threat actors to bypass security filters and deliver malicious executable attachments to users’ mailboxes. The issue arises from incorrect parsing of multiline RFC2231 header …

Read More