Hackers are spreading thousands of phishing attacks via Mimecast’s secure link feature.


  • Attackers abused Mimecast’s URL rewriting feature to hide malicious links in phishing emails.
  • More than 40,000 emails were sent to more than 6,000 organizations, including in the consulting and technology sectors.
  • The campaign bypassed filters globally, with most victims in the United States, although Mimecast says no loopholes exist.

Cybercriminals are abusing a legitimate feature of Mimecast to send convincing phishing emails to their victims, at scale.

This is according to cybersecurity researcher Check Point, which claims to have seen more than 40,000 such emails sent to more than 6,000 organizations around the world, in just two weeks.

Leave a Comment

Your email address will not be published. Required fields are marked *

Scroll to Top