Simple bypass of the link preview function in Outlook Junk folder, (Thu, May 14th)

2026-05-14T07:23:46Z9b5de39af69bf9b82cfd093d683e9d265c8a7a51efeab30208b4d9407ce93659
applecaptchachromiumedgeemail-securityexe-trafficisc-sansjunk-folderlink-previewmicrosoftoutlookpatch-tuesdaypatchesphishingproxysecurity-updatesvulnerabilitieswebsite-fraud

What happened

SANS ISC diary roundup (May 11–14, 2026): highlights include a write-up on a simple bypass of Outlook's Junk-folder link-preview behavior (Junk-mail strips formatting and can make link destinations visible), a deep-dive on website fraud and a discussion of proxying EXE traffic to a proxy, and commentary on CAPTCHAs. Major vendor updates: Microsoft May 2026 Patch Tuesday (fixes 137 vulnerabilities, plus 137 Chromium-related Edge issues) and Apple security updates (84 vulnerabilities across iOS/iPadOS/macOS/tvOS/watchOS/visionOS). Several ISC Stormcast podcast entries are also listed.

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
sans_isc_diary
Record identifier
9b5de39af69bf9b82cfd093d683e9d265c8a7a51efeab30208b4d9407ce93659
Enrichment time
2026-05-14T07:23:46Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.