GNU social JP
  • FAQ
  • Login
GNU social JPは日本のGNU socialサーバーです。
Usage/ToS/admin/test/Pleroma FE
  • Public

    • Public
    • Network
    • Groups
    • Featured
    • Popular
    • People

Conversation

Notices

  1. Embed this notice
    Fellows (fellows@cyberplace.social)'s status on Saturday, 22-Feb-2025 08:41:56 JST Fellows Fellows

    Recently I’ve seen a number of good looking malicious emails pretending to be from various orgs, all with included company logos.

    Looking over the HTML of the emails I noticed an image URL common to all of them, logo.clearbit[.]com. It was in the image tag for logo.

    It’s a company logo API that uses logo.clearbit[.]com/“domain.whatever” for logo creation.

    Might be a domain you want to start filtering for, as the API is clearly being abused thanks to it being absolutely free.

    #ThreatIntel

    In conversation about 3 months ago from cyberplace.social permalink
    • Embed this notice
      Fellows (fellows@cyberplace.social)'s status on Saturday, 22-Feb-2025 09:14:46 JST Fellows Fellows
      in reply to
      • G :donor: :Tick:
      • Kevin Beaumont

      @cirriustech @GossiTheDog Thanks for the info! From their site: “The Logo API is offered as a free, legacy product and is unsupported at this time”. Good chance that means it’s not monitored for abuse! Hopefully they’ll EOL it before December 1st.

      In conversation about 3 months ago permalink
    • Embed this notice
      G :donor: :Tick: (cirriustech@infosec.exchange)'s status on Saturday, 22-Feb-2025 09:14:47 JST G :donor: :Tick: G :donor: :Tick:
      in reply to
      • Kevin Beaumont

      @fellows @GossiTheDog It’s being sunsetted on December 1st 2025 BTW: https://help.clearbit.com/hc/en-us/articles/6987867587607-Legacy-Logo-API-I-FAQ

      In conversation about 3 months ago permalink

      Attachments


Feeds

  • Activity Streams
  • RSS 2.0
  • Atom
  • Help
  • About
  • FAQ
  • TOS
  • Privacy
  • Source
  • Version
  • Contact

GNU social JP is a social network, courtesy of GNU social JP管理人. It runs on GNU social, version 2.0.2-dev, available under the GNU Affero General Public License.

Creative Commons Attribution 3.0 All GNU social JP content and data are available under the Creative Commons Attribution 3.0 license.