{"id":336292,"date":"2021-09-07T19:15:03","date_gmt":"2021-09-07T16:15:03","guid":{"rendered":"https:\/\/en.buradabiliyorum.com\/outlook-contact-cards-can-easily-be-spoofed\/"},"modified":"2021-09-07T19:15:03","modified_gmt":"2021-09-07T16:15:03","slug":"outlook-contact-cards-can-easily-be-spoofed","status":"publish","type":"post","link":"https:\/\/buradabiliyorum.com\/en\/outlook-contact-cards-can-easily-be-spoofed\/","title":{"rendered":"#Outlook Contact Cards Can Easily Be Spoofed"},"content":{"rendered":"<p><strong>&#8220;#Outlook Contact Cards Can Easily Be Spoofed&#8221;<\/strong><\/p>\n<div>\n<img loading=\"lazy\" decoding=\"async\" class=\"type:primaryImage alignnone size-full wp-image-736621\" srcset=\"https:\/\/www.howtogeek.com\/wp-content\/uploads\/2021\/06\/microsoft-outlook-logo-675.png?width=398&amp;trim=1,1&amp;bg-color=000&amp;pad=1,1 400w, https:\/\/www.howtogeek.com\/wp-content\/uploads\/2021\/06\/microsoft-outlook-logo-675.png?width=1198&amp;trim=1,1&amp;bg-color=000&amp;pad=1,1 1200w\" sizes=\"auto, 400w, 1200w\" src=\"https:\/\/www.howtogeek.com\/wp-content\/uploads\/2021\/06\/microsoft-outlook-logo-675.png?width=1198&amp;trim=1,1&amp;bg-color=000&amp;pad=1,1\" alt=\"\" width=\"1200\" height=\"675\" onload=\"pagespeed.lazyLoadImages.loadIfVisibleAndMaybeBeacon(this);\" onerror=\"this.onerror=null;pagespeed.lazyLoadImages.loadIfVisibleAndMaybeBeacon(this);\"\/><\/p>\n<p>Phishing attacks are one of the oldest ways for malicious individuals to steal information, and an old-school phishing method has found its way into Outlook. Using characters from different alphabets, people can make victims believe spoofed emails are from genuine contacts, as reported by <a rel=\"nofollow noopener\" target=\"_blank\" href=\"https:\/\/arstechnica.com\/information-technology\/2021\/09\/microsoft-outlook-shows-real-persons-contact-info-for-idn-phishing-emails\/\">ArsTechnica.<\/a><\/p>\n<p>Fortunately, Outlook has received an update that fixes the problem, according to <a rel=\"nofollow noopener\" target=\"_blank\" href=\"https:\/\/www.dionach.com\/blog\/spoofing-microsoft-outlook-contact\/\">Mike Manzotti from dionach. <\/a>Make sure to get the latest version, so you don\u2019t fall victim to these phishing attacks.<\/p>\n<p>Essentially, what\u2019s h<a href=\"https:\/\/buradabiliyorum.com\/en\/category\/download-scripts-themes-apps\/\" data-internallinksmanager029f6b8e52c=\"9\" title=\"Download Scripts &amp; Themes &amp; Apps\" target=\"_blank\" rel=\"noopener\">app<\/a>ening here is phishers are using Microsoft Office to show a person\u2019s contact information even though the emails come from spoofed Internationalized Domain Names. The spoof comes from using different alphabets, such as Cyrillic, with characters that look like they would in the Latin alphabet.<\/p>\n<p>Information security professional and pentester <a rel=\"nofollow noopener\" target=\"_blank\" href=\"https:\/\/twitter.com\/dobby1kenobi\">Dobby1Kenobi<\/a>\u00a0did some testing and found that it was pretty easy to trick the system before the update was issued. It\u2019s interesting how much the characters look similar, and if you aren\u2019t paying attention, it\u2019s easy to see how someone could fall for it.<\/p>\n<p>In a <a rel=\"nofollow noopener\" target=\"_blank\" href=\"https:\/\/dobby1kenobi.medium.com\/lost-in-translation-222bbf00f2c\">blog post<\/a>, Dobby1Kenobi said the following:<\/p>\n<blockquote><p>I recently discovered a vulnerability that affects the Address Book component of Microsoft Office for Windows that could allow anyone on the internet to spoof contact details of employees within an organization using an external look-alike Internationalized Domain Name (IDN).\u00a0This means if a company\u2019s domain is \u2018somecompany[.]com\u2019, an attacker that registers an IDN such as \u2018\u0455omecompany[.]com\u2019 (xn--omecompany-l2i[.]com) could take advantage of this bug and send convincing phishing emails to employees within \u2018somecompany.com\u2019 that used Microsoft Outlook for Windows.<\/p>\n<\/blockquote>\n<p>When working correctly, using domains outside of the actual organization wouldn\u2019t show the address book entry for the person being spoofed, but with this bug, it would look like the email was coming from the person.<\/p>\n<p>Microsoft investigated the case, and initially, it sounded like the company wasn\u2019t going to fix the problem:<\/p>\n<blockquote><p>We\u2019ve finished going over your case, but in this instance it was decided that we will not be fixing this vulnerability in the current version and are closing this case.\u202f In this case, while spoofing could occur, the senders identity cannot be trusted without a digital signature. The changes needed are likely to cause false positives and issues in other ways.<\/p>\n<\/blockquote>\n<p>However, as mentioned, Microsoft did update Outlook to fix the problem. As always, let this serve as a reminder to be aware of who emails are coming from and verify that it\u2019s actually from who you think it is before you click any links. Also, make sure to keep your important apps up-to-date, as you want to make sure you have those security updates.<\/p>\n<\/div>\n<p><script async src=\"\/\/platform.twitter.com\/widgets.js\" charset=\"utf-8\"><\/script><\/p>\n<p><script>\n setTimeout(function(){\n  !function(f,b,e,v,n,t,s)\n  {if(f.fbq)return;n=f.fbq=function(){n.callMethod?\n  n.callMethod.apply(n,arguments):n.queue.push(arguments)};\n  if(!f._fbq)f._fbq=n;n.push=n;n.loaded=!0;n.version='2.0';\n  n.queue=[];t=b.createElement(e);t.async=!0;\n  t.src=v;s=b.getElementsByTagName(e)[0];\n  s.parentNode.insertBefore(t,s) } (window, document,'script',\n  'https:\/\/connect.facebook.net\/en_US\/fbevents.js');\n   fbq('init', '335401813750447');\n   fbq('track', 'PageView');\n  },3000);\n<\/script><\/p>\n<blockquote><p><strong><span style=\"color: #ff6600;\">If you liked the article, do not forget to share it with your friends. Follow us on\u00a0<span style=\"color: #ff0000;\"><a style=\"color: #ff0000;\" href=\"https:\/\/news.google.com\/publications\/CAAqBwgKMLG0nwswvr63Aw\" target=\"_blank\" rel=\"nofollow noopener noreferrer\">Google News<\/a><\/span>\u00a0too, click on the star and choose us from your favorites.<\/span><\/strong><\/p><\/blockquote>\n<blockquote>\n<p style=\"text-align: center;\">For forums sites go to <span style=\"color: #ff9900;\"><a style=\"color: #ff9900;\" href=\"https:\/\/forum.buradabiliyorum.com\/\" target=\"_blank\" rel=\"noopener\">Forum.BuradaBiliyorum.Com<\/a><\/span><\/strong>\n<\/p><\/blockquote>\n<blockquote>\n<p style=\"text-align: center;\"><strong>If you want to read more like this article, you can visit our <span style=\"color: #ff9900;\"><a style=\"color: #ff9900;\" href=\"https:\/\/en.buradabiliyorum.com\/technology\/\" target=\"_blank\" rel=\"noopener\">Technology category.<\/a><\/span><\/strong><\/p>\n<\/blockquote>\n<p><span style=\"color: black;\"><a style=\"color: #ff9900;\" href=\"https:\/\/www.howtogeek.com\/753688\/psa-outlook-contact-cards-can-easily-be-spoofed\/\" target=\"_blank\" rel=\"noopener\">Source<\/a><\/span><\/p>\n","protected":false},"excerpt":{"rendered":"<p>&#8220;#Outlook Contact Cards Can Easily Be Spoofed&#8221; Phishing attacks are one of the oldest ways for malicious individuals to steal information, and an old-school phishing method has found its way into Outlook. Using characters from different alphabets, people can make victims believe spoofed emails are from genuine contacts, as reported by ArsTechnica. Fortunately, Outlook has&#8230;<\/p>\n","protected":false},"author":1,"featured_media":336293,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"fifu_image_url":"https:\/\/www.howtogeek.com\/wp-content\/uploads\/2021\/06\/microsoft-outlook-logo-675.png?height=200p&trim=2,2,2,2","fifu_image_alt":"","footnotes":""},"categories":[18],"tags":[],"class_list":["post-336292","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-technology"],"_links":{"self":[{"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/posts\/336292","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/comments?post=336292"}],"version-history":[{"count":0,"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/posts\/336292\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/media\/336293"}],"wp:attachment":[{"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/media?parent=336292"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/categories?post=336292"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/tags?post=336292"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}