Open redirect on UK council website was being used for Royal Mail-themed parcel payments scam

An open redirect on a UK council-backed property website allowed low-level miscreants to evade filters. The website operated by tech services biz Civica had an open redirect being actively abused by spammers, piggybacking off the website’s domain authority so their messages weren’t flagged up by scanning tools.

