Subscription Bombing: Email under Attack

Lobsters Hottest News

Summary

Subscription bombing is a type of email attack where attackers flood a victim's inbox with unwanted subscription confirmations to hide malicious emails.

<p><a href="https://lobste.rs/s/c5akjg/subscription_bombing_email_under_attack">Comments</a></p>
Original Article

Similar Articles

Someone used my open source project to phish people

Hacker News Top

An open source project maintainer reports that attackers abused his project's invitation system to send phishing emails to over 14,000 people, exploiting unverified signups and a verified email domain. The incident highlights how well-intentioned design can be misused for malicious purposes.

Codex Discovered a Hidden HTTP/2 Bomb

Lobsters Hottest

Codex discovered a remote denial-of-service exploit dubbed 'HTTP/2 Bomb' that targets HPACK compression in major web servers (nginx, Apache, IIS, Envoy, Pingora), chaining a compression bomb with flow-control hold to exhaust server memory quickly.