banner-blog.jpg

MENLO SECURITY BLOG

Articles, trends, and advice on cloud security without compromise. Keep up with the latest blog insights on web isolation, network cybersecurity, malware, and more.

Krishnan Subramanian

Recent Posts

Credential Phishing: Themes and Tactics

Posted by Krishnan Subramanian on Mar 31, 2021

In the last month, the Menlo Labs team has observed a steady rise in credential phishing attacks. This method of attack is quite popular—attackers create fake login pages or forms to steal users’ credentials for commonly used services in a corporate environment.

Read More

Tags: phishing attacks, credential phishing, Decoy Files, Phishing Tactics, Phishing Kit

Increase In Attack: SocGholish

Posted by Krishnan Subramanian on Dec 17, 2020

Menlo Labs has uncovered a increase in a drive-by attack that impersonates legitimate browser, Flash, and Microsoft Teams updates

 

In the last two months, the Menlo Labs team has witnessed a surge in drive-by download attacks that use the “SocGholish” framework to infect victims. This particular framework is known to be widely used to deliver malicious payloads by masquerading as a legitimate software update. Isolation prevents this type of attack from delivering its payload to the endpoint. Here’s what we know.

 

Read More

Tags: drive-bys, SocGholish, social engineering, Chrome update, browser update, Microsoft Teams update, malicious ZIP file, malicious download, Firefox update, Flash update

New HTML Smuggling Attack Alert: Duri

Posted by Krishnan Subramanian on Aug 18, 2020

HTML Smuggling Campaign Is Stopped by the Menlo Security Cloud Platform

Menlo Security has been closely monitoring an attack we are naming “Duri.” Duri leverages HTML smuggling to deliver malicious files to users’ endpoints by evading network security solutions such as sandboxes and legacy proxies. Isolation prevents this attack from infecting the endpoint. Here’s what we know.


Read More

Tags: Isolation Core, Duri, DataURI

Connect with us

Lists by Topic

see all

Recent Posts