Colorful spams are back!

Yeeesss, the Spam/Trash folder is no longer so boring!

Finally, the spammers are now using all the features of the email clients and have made the subjects to look much nicer.


My company offers consulting on how to prepare for TISAX, ISO27001, NIS2, CSMS and SOC2 audits.
Get in touch with us here: https://www.endpoint-cybersecurity.com/contact/

Do you know how they do that?

They add UTF8 characters in the subject and then they encode the entire string using Quoted-Printable encoding:

Content-Type: text/html; charset="utf-8"
Content-Transfer-Encoding: quoted-printable
Subject: =?utf-8?q?=F0=9F=91=B6_Free_Trial_of_Diapers_from_The_Honest_Company_?=
 =?utf-8?b?8J+Rtg==?=

This is the output:

 

Another example:

Content-Type: text/html; charset="utf-8"
Content-Transfer-Encoding: quoted-printable
Subject: =?utf-8?b?8J+YqCBXaWZlIFdhbGtlZCBJbiAtIE9PUHMhISEhISDwn5io?=



© Copyright 2017 Sorin Mustaca, All rights Reserved. Written For: Sorin Mustaca - Security & Technology


Want to work with me on this topic?
Check Endpoint Cybersecurity to see the consulting services we offer.