Tag: Payload Delivery
-

Techniques for Embedding Payloads in Image Files for Phishing
Explore how attackers embed malicious payloads in images to bypass security filters in phishing campaigns.
-

Exploiting JPEG Payloads: The Return of Evil MSI Background
Explore the resurgence of MSI-branded payloads using JPEG images in phishing campaigns, analyzing how this tactic is reemerging and what makes it effective.
-

Incorporating Scalable Vector Graphics (SVG) in Phishing Campaigns
Explore SVG files as a novel payload delivery mechanism in phishing campaigns, understanding SVGs’ effectiveness, delivery methods, and security challenges.
-

Leveraging SVG Files in Phishing: Techniques and Countermeasures
Explore how attackers use SVG files within phishing campaigns to deploy payloads that bypass traditional security measures. Dive into effective tactics for higher engagement.
-

Integrating Vulnerability Exploitation into Phishing Campaigns
Learn to integrate vulnerability exploitation into phishing campaigns to enhance payload delivery and success rates with specific techniques and examples.
-

Selective HTTP Proxying: Enhancing Targeted Phishing Delivery
Explore selective HTTP proxying techniques to deliver targeted phishing payloads effectively, minimizing detection while increasing engagement.
-

Analyzing Payload Delivery Techniques in Phishing Campaigns
Phishing campaigns are a constant threat to organizational security, making the analysis of payload delivery techniques crucial for testing defenses. A high-yield execution doesn’t merely rely on disguising an email but leverages specific, often overlooked techniques to bypass security measures and ensure payload execution. This article will equip you with the ability to deploy phishing…
-

Exploiting Out-of-bounds Write Vulnerabilities in Phishing Campaigns
Discover how out-of-bounds write vulnerabilities can be leveraged to deliver malware payloads in phishing campaigns, exposing critical security gaps.
-

Pick Your Poison
In this article, we will consider various Payloads and Payload Delivery mechanisms. Although we won’t get into the specifics of each (yet), we will provide an overview of common tactics. Payloads The goal of any campaign is to have the target initiate their own compromise. With the exception of credential theft, these typically come in…




