Hackers are increasingly using SVG files in phishing attacks to target Office 365 login credentials, reports cybersecurity experts at Sophos. SVG files, which are scalable vector graphics, are being employed due to their ability to bypass email protection systems and display malicious hyperlinks. These XML-based images can contain active web content like scripts and anchor tags, making them a preferred tool for cybercriminals.
To protect against these attacks, Sophos suggests either configuring the device to open SVG files in a non-browser program like Notepad, or utilizing a reputable email security program. These measures aim to minimize the risk of falling victim to phishing scams that deploy SVG files to steal sensitive information. Stay informed and stay safe in the evolving landscape of cybersecurity threats.