Compromised Account (Critical Anomaly) Incident for Phishing Emails Sent by Protected Users
By
A Critical Anomaly indicating a compromised account is now generated when protected users send internal or outgoing phishing/spam emails.
Detecting compromised accounts is key to prevent extensive damage to organizations.
A strong indicator for a compromised account are phishing/spam emails sent from this account to other internal users or external parties.
When Harmony Email & Collaboration detects such emails, it now does not only quarantine them, but also generates a compromised account (Critical Anomaly) event.
Administrators are then alerted and can act fast to prevent any damage from this user.
You may also like
Email Agent Hijacking: The Hidden Threat That Breaks Post-Delivery Security
Key takeaways AI agents create a new email attack surface ...
How Check Point Email Security Stopped a Student Job Scam Before It Reached the Inbox
A student receives what looks like a routine summer job ...
Prevention Before the Inbox: Reading the Microsoft Defender Benchmark Report in Context
Check Point Email Security is built to stop threats before ...
ClickFix: The Attack That Turns Users Into Their Own Attackers
ClickFix has quickly become one of the most prevalent social ...



