Showing posts with label phishing. Show all posts
Showing posts with label phishing. Show all posts

Wednesday, May 3, 2017

In light of this latest GMail phishing scam...

With this new email phishing scam rearing it's ugly head it's always a good time to pause and think about how these things happen and how we can prevent them.

How do they happen? Usually because we are so accustomed to interacting with email from people we know that clicking on a "Open in Docs" button from a colleague doesn't even faze us.

So what happened and what do you do...?

Monday, May 5, 2014

Email spam - sniffing out the bad, even from trusted sources

This post is a follow-up, of sorts, to the previous "Twitter spam" and "Phishing" posts. In making the slide deck about Twitter & Phishing spam I realized there were a few different variations of spam in general, especially within emails.


This post deals specifically with email, and more to the point emails you receive from trusted sources that contain questionable material and links.

When a user gets hacked or compromised as a result of a phishing scheme, the people involved will use the users contacts list to send out emails in hopes of getting more users to give up their usernames and passwords...

Friday, May 2, 2014

Phishing: not the hook you're looking for

This post is a follow-up of sorts, to the previous "Twitter spam" post. In making the slide deck about Twitter spam I realized there were a few different variations of spam in general, especially within emails.

This post deals specifically with "phishing"

Another post will address email arriving from trusted sources but smelling particularly spammy due to phishing...


If Twitter has it's moments of Costco-sized spam deliveries than email is the place where Costco shops. 

A lot of email spam originates as "phishing" scams. These are emails designed to get the user to voluntarily offer up their username and password. These emails convince the recipient they need to pride details, or log in, to prevent something bad from happening. Once the user replies or logs in the scammers have their passwords and can use their accounts to send out spam to a users address book...