⚠️ Zendesk Encountered Vulnerability: Discord, Riot Games, and Tinder Users Bombarded with Spam
Global users are facing a large-scale email attack stemming from a security vulnerability in the customer service system Zendesk. Due to a configuration flaw in the system, hackers are wildly sending spam emails using the official support channels of major companies.
What happened?
Attackers exploited a feature vulnerability in Zendesk that allows unauthorized users to submit requests. As a result, the official systems of various platforms automatically sent hundreds of strange confirmation emails to users.
Which companies are affected?
The current list of impacted companies includes: Discord, Riot Games, Dropbox, NordVPN, CD Projekt, and the Tennessee Department of Labor in the United States, among others.
Potential risks:
Although no malicious links have been found in the emails so far, the email subjects are highly misleading (such as “Law Enforcement Request,” “Discord Nitro Giveaway,” or “Help Me!”).
Covering Attack: This type of “email bombing” is often used to obscure real security alerts (such as unauthorized login or withdrawal notifications). Target Filtering: Attackers may use this to verify email activity, preparing for subsequent targeted phishing.
Safety advice:
If you see unusual emails from official domains, please remain calm and do not click any links. Check and enhance the security settings of accounts associated with these services (such as enabling two-factor authentication 2FA). Keep a close eye on account changes to prevent hackers from taking advantage of the chaos.
Zendesk officials have stated that they have deployed new security mechanisms. Staying vigilant is the first step to protecting online security!🛡️
#Zendesk #网络安全 #垃圾邮件 #Discord #安全提示