Search and filter across all detection sources
167 rules
Open redirect: Atdmt
Message contains use of the Atdmt (Facebook) open redirect.
Open redirect: HHS
Looks for use of the HHS open redirect.
Open redirect: Avast
Detects emails containing links to avast.com leveraging an open redirect
Open redirect: Snapchat
Message contains use of the click.snapchat.com open redirect.
Open redirect: Doubleclick.net
Doubleclick.net link leveraging an open redirect from a new or outlier sender.
Open redirect: emlakarsa
Message contains use of the emlakarsa open redirect. This has been exploited in the wild.
Open redirect: ExacTag
Message contains use of the ExacTag open redirect. This has been exploited in the wild.
Open redirect: IndiaTimes
Message contains use of the IndiaTimes open redirect. This has been exploited in the wild.
Open redirect: LearningApps
Message contains use of the LearningApps open redirect. This has been exploited in the wild.
Open redirect: Medium
Message contains use of the Medium open redirect. This has been exploited in the wild.
Open redirect: nowlifestyle.com
Message contains use of the nowlifestyle.com open redirect. This has been exploited in the wild.
Open redirect: PremierBet
Message contains use of the PremierBet open redirect. This has been exploited in the wild.
Open redirect: MSN
Message uses an MSN open redirect. Sample (benign) redirect to sublimesecurity[.]com: https[:]//www[.]msn[.]com/en-gb/lifestyle/rf-best-products-uk/redirect?url=aHR0cHM6Ly93d3cuc3VibGltZXNlY3VyaXR5LmNvbQ==
Open redirect: BMW USA
Message contains use of BMW USA's open redirect but the sender is not BMW.
Open redirect: Cartoon Network
This rule detects the use of Cartoon Network's Denmark domain as an open redirect.
Open redirect: TikTok
Message contains use of an open redirect on TikTok. This has been exploited in the wild.
Open redirect: artkaderne
Message contains use of an open redirect on artkaderne.dk. This has been exploited in the wild.
Open Redirect: asemailmgmteu.com
Message contains use of the asemailmgmteu.com open redirect. This has been exploited in the wild.
Open redirect: bangkoksync.com
Message contains use of the bangkoksync.com open redirect. This has been exploited in the wild.
Open redirect: bestdeals.today
Message contains use of the bestdeals.today open redirect. This has been exploited in the wild.
Open redirect: Club-OS
Message contains use of the Club-OS open redirect. This has been exploited in the wild.
Open redirect: Dell
Message contains use of the Dell open redirect, but the sender is not Dell.
Open redirect: designsori.com
Message contains use of the designsori.com open redirect. This has been exploited in the wild.
Open redirect: documentmailbox.com
Message contains use of the documentmailbox.com open redirect. This has been exploited in the wild.
Open redirect: easycamp.com
Message contains use of the easycamp.com open redirect. This has been exploited in the wild.