Heads up: Active phishing campaign targeting the OWASP Global Board
1 view
Skip to first unread message
Steve Springett
unread,
Mar 27, 2026, 4:10:06 PM (3 days ago) Mar 27
Reply to author
Sign in to reply to author
Forward
Sign in to forward
Delete
You do not have permission to delete messages in this group
Copy link
Report message
Show original message
Either email addresses are anonymous for this group or you need the view member email addresses permission to view the original message
to OWASP Project Leaders, OWASP Chapter Leaders, OWASP Global Board
Leaders,
We've identified a spear phishing campaign targeting OWASP Global Board members. Some of these emails are spoofed to look like they're coming from me. They are not.
If you receive anything suspicious that appears to be from a Board member, do not engage with it. Verify through a separate channel and report it to Foundation staff.
Image samples attached.
—
Steve Springett
Leader, OWASP CycloneDX and Dependency-Track
Leader and Co-author, OWASP SCVS
Chair, OWASP CycloneDX and Ecma TC54
Chair, OWASP Global Board of Directors