Business Daily Media

Men's Weekly

.

SquareX Uncovers Critical Vulnerabilities in Malicious Document Detection Among Top Webmail Providers Like Gmail, Outlook

  • Written by PR Newswire
SquareX Uncovers Critical Vulnerabilities in Malicious Document Detection Among Top Webmail Providers Like Gmail, Outlook

Vulnerabilities include significant shortcomings in the scanning of email attachments for malicious documents, potentially putting millions of users worldwide at risk

SINGAPORE, April 4, 2024 /PRNewswire/ -- SquareX[1], a browser-security startup led by serial cybersecurity entrepreneur Vivek Ramachandran[2], today unveiled the results of its recent study, revealing a concerning reality about major email providers' inadequacies in safeguarding users against malicious document-based threats.

The study[3], conducted by SquareX's research and development team, involved analysing 100 malicious document samples, which were segmented into four distinct categories:

  1. Original malicious document samples from MalwareBazaar
  2. Slightly altered malicious document samples from MalwareBazaar, such as changes in metadata and file formats
  3. Malicious document samples modified using attack tools that have existed for many years
  4. Basic Macro-enabled documents that execute programs on user devices.

These samples were sent via a third-party email provider, ProtonMail, to several major email providers, including industry giants such as Gmail, Outlook, Yahoo, AOL, and Apple iCloud Mail. The study revealed that while email providers like Gmail and Outlook demonstrated basic detection capabilities in identifying unmodified malicious document samples, they faltered in detecting modified malicious documents manipulated with readily accessible attack tools – exposing a glaring cybersecurity loophole that poses a potential threat to millions of users around the world.

SquareX Malicious Document Detection SquareX Malicious Document Detection

Given the prevailing reliance on email services as secure communication channels, these findings raise important questions about the effectiveness of relying on existing email security measures and the false sense of security they may instill in millions of users and enterprises worldwide. While cyber threats are becoming increasingly sophisticated, email providers appear ill-prepared to detect and intercept these emerging threats, consequently leaving users to potential exploitation.

"The inadvertent discovery of this significant lapse in email security during our product enhancement process was startling," shared Vivek Ramachandran, the founder and CEO of SquareX. "Our intention in making these findings public is to ignite a dialogue on the urgent need for reinforced security measures and encourage email providers to either elevate their security protocols or transparently acknowledge their current limitations," added Vivek.

To bridge this security gap, SquareX has introduced an advanced in-browser malicious document scanning feature as a part of its browser extension, currently in beta. This move not only speaks of the company's commitment to making the web a safer place but also invites other companies to join forces in securing the web activities of users and enterprises from cyber-attacks.

About SquareX:

SquareX[4] is a browser-security startup founded by the seasoned cybersecurity expert and serial entrepreneur, Vivek Ramachandran[5]. At the core of SquareX's mission is the commitment to empower users and enterprises with the confidence to navigate the online world without fear. With its innovative browser-native security solutions and unique isolation technology, SquareX aims to safeguard both individuals and enterprises from a spectrum of browser-based threats, encompassing malicious files, websites, scripts, and compromised networks.

Available on the Chrome and Edge stores, the SquareX browser extension has not only been awarded as "featured extension" by Chrome store but has also earned over 100,000 users globally in less than a year.

References

  1. ^ SquareX (sqrx.com)
  2. ^ Vivek Ramachandran (www.linkedin.com)
  3. ^ The study (sqrx.com)
  4. ^ SquareX (sqrx.com)
  5. ^ Vivek Ramachandran (www.linkedin.com)

Read more https://www.prnasia.com/story/archive/4378720_AE78720_0

Psychosocial injury risk starts inside workplace microcultures

Psychological injury is now one of the most expensive categories of workers compensation claims in Australia, with Safe Work Australia reporting t...

2025 Thryv Business and Consumer Report - Australian small businesses show grit under pressure

Australia’s small businesses are powering ahead with optimism, resilience and discipline, however, mounting pressures on costs, wellbeing and cons...

Security by Default: Why 2026 Will Force Organisations to Rethink Cloud and AI

financial accountability to how they run cloud and AI, according to leading Australian systems integrator, Brennan. Based on customer insights...

UNSW launches plan to help Aussie startups scale overseas

UNSW Launches Global Innovation Foundry to Scale 100 Australian Startups Internationally New initiative provides startups and spinouts with direc...

Payroll Under Pressure: Why Mid-Sized SMEs Struggle to Keep Pay Accurate

A year after wage theft reforms came into effect, Australian businesses have increased their focus on payroll compliance, but confidence in pay accu...

Refunds to Revenue: AI and loyalty perks help retailers in post-holiday hangover

Australian retailers are turning to artificial intelligence to simplify and automate returns and exchanges, while strengthening loyalty programs a...