ThreatCluster

Hackers Exploit Routing Misconfigurations to Spoof Organizations

First seen 7 Jan 2026, 11:41 UTC GbhackersCybersecuritynews 24

Article Content

Browse articles
ThreatCluster

Phishing actors are using complex routing scenarios and misconfigured security settings to send deceptive emails that appear to originate from within organizations. This method has been employed to deliver various phishing messages, making detection more difficult for recipients. The attacks leverage platforms like Tycoon2FA for distribution.