I take great pleasure in flagging the training emails from my company’s IT contractor as phishing emails. After all, they’re unexpected emails with big link that I simply must quickly click on. That sounds like phishing to me!
I’ve genuinely done this once or twice as it really looked like phishing to me. External email, big red button, hey, you have to finish this training until date xy!
Ideally it should simply be a friendly reply back of “hey thank you for your concern but BrainBlstrz is a legitimate company that we partner with, you can retrieve the email by [steps] if still you need it” but not everyone can be so reasonable about such things
I take great pleasure in flagging the training emails from my company’s IT contractor as phishing emails. After all, they’re unexpected emails with big link that I simply must quickly click on. That sounds like phishing to me!
I’ve genuinely done this once or twice as it really looked like phishing to me. External email, big red button, hey, you have to finish this training until date xy!
Yeah, no, fuck you, report as phishing.
Whoops (:
Ideally it should simply be a friendly reply back of “hey thank you for your concern but BrainBlstrz is a legitimate company that we partner with, you can retrieve the email by [steps] if still you need it” but not everyone can be so reasonable about such things
Those should be validated external senders and links, else they are spam or phishing by default.