Close Menu
Alpha Leaders
  • Home
  • News
  • Leadership
  • Entrepreneurs
  • Business
  • Living
  • Innovation
  • More
    • Money & Finance
    • Web Stories
    • Global
    • Press Release
What's On
‘We do not want humans to have the same fate as dinosaurs’: SpaceX IPO reads like Hollywood fantasy version of the future

‘We do not want humans to have the same fate as dinosaurs’: SpaceX IPO reads like Hollywood fantasy version of the future

21 May 2026
2 Tell-Tale Signs Of ‘Fake Love’ In A Relationship, By A Psychologist

2 Tell-Tale Signs Of ‘Fake Love’ In A Relationship, By A Psychologist

21 May 2026
Wall Street thinks there’s a chance the S&P 500 could go 20% higher by 2027

Wall Street thinks there’s a chance the S&P 500 could go 20% higher by 2027

21 May 2026
Facebook X (Twitter) Instagram
Facebook X (Twitter) Instagram
Alpha Leaders
newsletter
  • Home
  • News
  • Leadership
  • Entrepreneurs
  • Business
  • Living
  • Innovation
  • More
    • Money & Finance
    • Web Stories
    • Global
    • Press Release
Alpha Leaders
Home » Delete Any Emails That Include These Images On Your Phone Or PC
Innovation

Delete Any Emails That Include These Images On Your Phone Or PC

Press RoomBy Press Room19 July 20255 Mins Read
Facebook Twitter Copy Link Pinterest LinkedIn Tumblr Email WhatsApp
Delete Any Emails That Include These Images On Your Phone Or PC

Republished on July 19 with new analysis into this dangerous image email attack.

Here we go again. There’s a fast growing threat in your inbox that’s hard to detect — even for security software on your PC. This has “seemingly come out of nowhere,” but you need to be aware. And it means deleting a raft of incoming emails.

The new warning comes courtesy of Ontinue, which says “threat actors are increasingly leveraging Scalable Vector Graphics (SVG) files as a delivery vector for JavaScript-based redirect attacks.” Plenty of these images, “commonly treated as harmless” contain “embedded script elements” that lead to browser redirects. And that’s a huge risk.

While these images might be .SVG attachments, as we have seen before, they could also be links to external images pulled into the email. And the campaign also relies on spoofed domains and email lures to trick users into opening and engaging.

As Sophos explains, the SVG file format “is designed as a method to draw resizable, vector-based images on a computer. By default, SVG files open in the default browser on Windows computers. But SVG files are not just composed of binary data, like the more familiar JPEG, PNG, or BMP file formats. SVG files contain text instructions in an XML format for drawing their pictures in a browser window.”

VIPRE warns that “up until this point, SVGs have been recognized by email security tools as generally benign image files, which is why attackers are now having so much success hiding their nefarious exploits in them.”

Looking at these latest attacks, SlashNext’s J Stephen Kowski told me “when you open or preview these ‘images,’ they can secretly redirect your browser to dangerous websites without you knowing.” That means you need to be “extra careful” with images.

Because these attackers leverage spoofed domains and senders to trick you, it isn’t as easy as just avoiding emails from unknown senders. Instead, you should delete any email with an .SVG attachment unless you’re expecting it. And you should allow your browser to block external images until you’re certain of their origin.

Kowski says these emails will also likely be “pushy about viewing the image right away,” and while “your email provider’s built-in security features, such as spam filtering and safe attachments, can help, they’re not perfect against these newer tricks.”

Jason Soroko from Sectigo goes even further, warning security teams to “treat every inbound SVG as a potential executable,” as the surge in such attacks continues.

The real threat though lies in user complacency. SVG attacks, VIPRE says, are now tussling with PDFs to become “attackers’ favorite attachments of choice.” These are only images, most users assume, and so no click-throughs, no harm.

Bambenek Consulting’s John Bambenek says this is “a fresh spin on the technique of using image files for delivering suspect content, in this case, malicious PDFs. The attackers have to rely on complacency (“it’s only an image, it doesn’t execute code”) to lull organizations into accepting this content and getting it on the inside of a network.”

Ontinue says “the observed targets of this campaign fall into B2B Service Providers, including the ones handling valuable Corporate Data regularly, including Financial and Employee data, Utilities, Software-as-a-Service providers that are great social engineering targets as they expect to receive a high volume of emails.”

The payload itself “is delivered via an .SVG file that contains a JavaScript block hidden within a CDATA section. The embedded code uses a static XOR key to decrypt a secondary payload at runtime. This decoded script reconstructs and executes a redirect command using the Function() constructor.”

And the team warns “this technique demonstrates how adversaries are shifting away from executable payloads and towards smuggling (HTML and now SVG) techniques. By embedding script logic into image formats and using trusted browser functions, the attack chain avoids triggering traditional behavioral or signature-based alerts.”

The emails containing the attachments or links will be simple, “using a minimal format to avoid detection and provoke curiosity or interaction.” Hijacking poorly protected domains or spoofing others with special characters enhances the lure.

“While this report and research is valuable to enterprises,” Bambenek says, “and the search valuable for hunt teams, organizations without a security staff or end consumers will remain vulnerable to conventional cybercrime with this technique.”

“This SVG attack vector is exactly what we’ve been tracking,” Kowski warns. “Attackers have exhausted much of the text-based social engineering playbook over the last ten years and are now getting creative with content payloads to execute malicious code.” And this is easily done because “attackers can easily spoof trusted senders, making recipients more likely to open what appears to be an innocent image file.”

“The beauty of SVG files from an attacker’s perspective,” he told me, “is that they look like harmless images but can contain embedded JavaScript that runs the moment someone opens the file in a browser, bypassing traditional email security that focuses on executable attachments.” Which means users need a new defensive playbook.

And so the advice is just as simple. If you’re not expecting an email which includes image links or .SVG attachments, delete them from your inbox. “This campaign highlights a creative pivot in attacker methodology,” the team says, “using benign file formats to hide malicious logic and evade established detection controls.”

Which is another way of saying that you’re your own best defense.

email warning Gmail warning Microsoft attack microsoft warning outlook warning pc attack pc warning Windows Attack windows warning
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email Copy Link

Related Articles

2 Tell-Tale Signs Of ‘Fake Love’ In A Relationship, By A Psychologist

2 Tell-Tale Signs Of ‘Fake Love’ In A Relationship, By A Psychologist

21 May 2026
​How AI Is Changing The Economics Of Integration

​How AI Is Changing The Economics Of Integration

21 May 2026
Airbnb CEO Brian Chesky Called Chinese AI Fast And Cheap. Now, Congress Wants Answers

Airbnb CEO Brian Chesky Called Chinese AI Fast And Cheap. Now, Congress Wants Answers

21 May 2026
Are Financial Institutions Failing To Back The Low-Carbon Economy?

Are Financial Institutions Failing To Back The Low-Carbon Economy?

21 May 2026
Latest AI Behaves More Like Humans By Rudely Interrupting You During Conversational Chats And We Might Relish It

Latest AI Behaves More Like Humans By Rudely Interrupting You During Conversational Chats And We Might Relish It

21 May 2026
Kordata Launches To Power Next-Gen Clinical Trials

Kordata Launches To Power Next-Gen Clinical Trials

21 May 2026
Don't Miss
Unwrap Christmas Sustainably: How To Handle Gifts You Don’t Want

Unwrap Christmas Sustainably: How To Handle Gifts You Don’t Want

By Press Room27 December 2024

Every year, millions of people unwrap Christmas gifts that they do not love, need, or…

Exclusive: DeFi platform Azura launches after raising .9 million from Initialized

Exclusive: DeFi platform Azura launches after raising $6.9 million from Initialized

22 October 2024
Walmart dominated, while Target spiraled: the winners and losers of retail in 2024

Walmart dominated, while Target spiraled: the winners and losers of retail in 2024

30 December 2024
Stay In Touch
  • Facebook
  • Twitter
  • Pinterest
  • Instagram
  • YouTube
  • Vimeo
Latest Articles
SpaceX’s IPO filing is full of surprises

SpaceX’s IPO filing is full of surprises

21 May 20260 Views
Airbnb CEO Brian Chesky Called Chinese AI Fast And Cheap. Now, Congress Wants Answers

Airbnb CEO Brian Chesky Called Chinese AI Fast And Cheap. Now, Congress Wants Answers

21 May 20261 Views
Europe is considering price caps to control inflation. CEOs are shaking their heads in despair 

Europe is considering price caps to control inflation. CEOs are shaking their heads in despair 

21 May 20261 Views
Are Financial Institutions Failing To Back The Low-Carbon Economy?

Are Financial Institutions Failing To Back The Low-Carbon Economy?

21 May 20262 Views

Recent Posts

  • ‘We do not want humans to have the same fate as dinosaurs’: SpaceX IPO reads like Hollywood fantasy version of the future
  • 2 Tell-Tale Signs Of ‘Fake Love’ In A Relationship, By A Psychologist
  • Wall Street thinks there’s a chance the S&P 500 could go 20% higher by 2027
  • ​How AI Is Changing The Economics Of Integration
  • SpaceX’s IPO filing is full of surprises

Recent Comments

No comments to show.
About Us
About Us

Alpha Leaders is your one-stop website for the latest Entrepreneurs and Leaders news and updates, follow us now to get the news that matters to you.

Facebook X (Twitter) Pinterest YouTube WhatsApp
Our Picks
‘We do not want humans to have the same fate as dinosaurs’: SpaceX IPO reads like Hollywood fantasy version of the future

‘We do not want humans to have the same fate as dinosaurs’: SpaceX IPO reads like Hollywood fantasy version of the future

21 May 2026
2 Tell-Tale Signs Of ‘Fake Love’ In A Relationship, By A Psychologist

2 Tell-Tale Signs Of ‘Fake Love’ In A Relationship, By A Psychologist

21 May 2026
Wall Street thinks there’s a chance the S&P 500 could go 20% higher by 2027

Wall Street thinks there’s a chance the S&P 500 could go 20% higher by 2027

21 May 2026
Most Popular
​How AI Is Changing The Economics Of Integration

​How AI Is Changing The Economics Of Integration

21 May 20261 Views
SpaceX’s IPO filing is full of surprises

SpaceX’s IPO filing is full of surprises

21 May 20260 Views
Airbnb CEO Brian Chesky Called Chinese AI Fast And Cheap. Now, Congress Wants Answers

Airbnb CEO Brian Chesky Called Chinese AI Fast And Cheap. Now, Congress Wants Answers

21 May 20261 Views

Archives

  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025
  • April 2025
  • March 2025
  • February 2025
  • January 2025
  • December 2024
  • November 2024
  • October 2024
  • September 2024
  • August 2024
  • July 2024
  • June 2024
  • May 2024
  • April 2024
  • March 2024
  • February 2024
  • January 2024
  • December 2023
  • March 2022
  • January 2021
  • March 2020
  • January 2020

Categories

  • Blog
  • Business
  • Entrepreneurs
  • Global
  • Innovation
  • Leadership
  • Living
  • Money & Finance
  • News
  • Press Release
© 2026 Alpha Leaders. All Rights Reserved.
  • Privacy Policy
  • Terms of use
  • Advertise
  • Contact

Type above and press Enter to search. Press Esc to cancel.