This devious phishing scam makes it look like dodgy emails are actually safe

Hackers are using the dreaded “zero font” tactic in phishing emails, creating a false sense of legitimacy for otherwise malicious threats, researchers say.

As the name suggests, zero font is a tactic in which hackers use font size 0 for a font, making certain text invisible to the human eye. At the same time, software, and more importantly antivirus and email security software, can read it. Threat actors use this fact to confuse email security solutions and ensure that malicious emails end up in the inbox instead of the spam folder.