Spammers Exploit ASCII Smuggling to Bypass AI Email Filters
September 4, 2026
oecd:2026-09-04-c579View source ↗
What happened
Cybercriminals have adopted the ASCII smuggling technique, embedding invisible Unicode characters in emails to evade AI-based spam and phishing filters. This has led to a surge in spam and phishing attacks, as AI systems fail to detect malicious content, causing harm to users and communities. Microsoft researchers reported a significant increase in such incidents.
Reported impact
- Affected parties
- Not publicly disclosed
- Harm type
- Not publicly disclosed
- Scale
- Not publicly disclosed
- Financial impact
- Not publicly disclosed
- Regulatory action
- Not publicly disclosed
Classification
Relevant governance controls
Governance control mapping is not available for this record.
- No controls mapped
Not publicly disclosed
Control mapping is analytical. It does not state that any control would have prevented the incident.
Sources and evidence
OECD AI Incidents Monitor
Spammers Exploit ASCII Smuggling to Bypass AI Email Filters
2026-09-04