Cybersecurity Forum

This forum is for all security enthusiasts to discuss Fortinet's latest & evolving technologies and to connect & network with peers in the cybersecurity hemisphere. Share and learn on a broad range of topics like best practices, use cases, integrations and more. For support specific questions/resources, please visit the Support Forum or the Knowledge Base.

knowles13088
New Contributor

Technique to block/quarantine phishing emails?

Below is a recent link about a fresh crop of phishing techniques where the @ symbol can be used to pass credentials to a website. Can anyone offer a technique to prevent emails like this from passing through a Fortimail appliance?

blog.malwarebytes.com/social-engineering/2022/05/long-lost-symbol-gets-new-life-obscuring-malicious-urls/

Or, lacking that, some type of rule in a FortiGate filter to prevent access to such a website?

Thank you!

​​
1 REPLY 1
Jjchen_FTNT
Staff
Staff

Hi Peter,

It seems currently FML doesn't automatically strip the string before @ , we will discuss this with dev. Thanks for this info.​