Can’t make the wrong people look bad.

you are viewing a single comment's thread
view the rest of the comments
[–] 32 points 5 days ago (4 children)

Fun fact, those fishing emails usually share header information unique to the phishing email test service.

  • source
  • hideshow 8 child comments
  • [–] 7 points 5 days ago

    Yeah, I used to see these when I worked at a big corp. I would do a whois search on the domains used and 9/10 times it would come back as some compliance contractor the company used. I then proceeded to roll my rolly chair up and down every aisle warning my engineers. I spent so much time rolling in that job they should have bought me a rascal scooter with a built in desk. :D

  • source
  • parent
  • [–] 4 points 4 days ago

    We once had one that had what looked like a user ID in the URL. Checked with a coworker. The IDs appeared to be given sequentially. So I copied the URL and visited the site many times with different IDs.

    A lot of people failed the phishing test that month and would deny it.

  • source
  • parent