My company sends me obvious phishing e-mails once per week. If they are not all reported in a timely manner, then I am automatically assigned mandatory training.What is the name of this humiliation ritual?
Its called vibecode a script to automatically take care of this bullshit.
>>109696372can't you write a script to report those phishing emails automatically? surely if they are this obvious there is some matchable content across all templates
>>109696372wow your company's cyber sex team are lazy retards. Mine sends out obvious phishing scams and you only get scolded if you click the link
>>109696388yeah. The worst part is that I work with people who actually clicked the links thinking they were legitimate.>>109696380Typically, they are disguised as package tracking e-mails. The sender's address is the giveaway, but it always changes.
>>109696434Look at the DKIM and SPF headers. One of those two will always fail with spam.
>>109696372being pushed to the door?
I'm somewhat curious how many real phishing reports your cyber department gets, and whether they might accidentally be training themselves to overlook real reports because of the flood compliance training reports, but I suppose you don't have that data. Might still be an interesting idea to put into a team lead or manager's head, alert fatigure and trust erosion are significant in their effect on productivity.
>>109696721If they're even remotely competent the pentest emails don't ever make it into the legitimate report inbox unless someone screenshots the email.Hell they might not even be monitoring the reports manually.
>>109696721I'm a cybersexer. The system automatically filters out the phishing campaign emails I send out so if users report them it doesn't report them like legitimate reports of actual phishing emails.
It's called "you or some retard exec got pwnd so now the entire company needs hella security overhauls and training".t. knower
>What is the name of this humiliation ritual?Employment
At my jew jail the managers send out emails like, "I received a suspicious looking email, watch out ;)" even though once you report the fake fishing email it immediately tells you it was a test. It's so dumb. Any time I get an email with external URLs I report it as suspicious even if I think it's legitimate. I think this keeps my work from outsourcing tools that should be hosted locally and also stops dumb cunts from mailing spam to everyone.