<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[the infosec people at my work are rioting because the Distant Corporate Overlord sent an email that scores 10&#x2F;10 on the phishing scale (“We want to give you a present to thank you for all your hard work!]]></title><description><![CDATA[<p>the infosec people at my work are rioting because the Distant Corporate Overlord sent an email that scores 10/10 on the phishing scale (“We want to give you a present to thank you for all your hard work! [Click here] to claim your gift!”)</p>]]></description><link>https://forum.other.li/topic/3ee69394-94a9-459b-8690-8ed0b096f7fd/the-infosec-people-at-my-work-are-rioting-because-the-distant-corporate-overlord-sent-an-email-that-scores-10-10-on-the-phishing-scale-we-want-to-give-you-a-present-to-thank-you-for-all-your-hard-work</link><generator>RSS for Node</generator><lastBuildDate>Sun, 31 May 2026 03:27:45 GMT</lastBuildDate><atom:link href="https://forum.other.li/topic/3ee69394-94a9-459b-8690-8ed0b096f7fd.rss" rel="self" type="application/rss+xml"/><pubDate>Thu, 28 May 2026 09:28:04 GMT</pubDate><ttl>60</ttl><item><title><![CDATA[Reply to the infosec people at my work are rioting because the Distant Corporate Overlord sent an email that scores 10&#x2F;10 on the phishing scale (“We want to give you a present to thank you for all your hard work! on Sat, 30 May 2026 19:41:42 GMT]]></title><description><![CDATA[<p><a href="https://mastodon.me.uk/@fishidwardrobe">@fishidwardrobe@mastodon.me.uk</a> <a href="https://infosec.exchange/@0xabad1dea">@0xabad1dea@infosec.exchange</a> beautiful ​<img class="not-responsive emoji" src="https://other.li/files/3f71e35a-fac6-423f-92e1-89410ac64c73" title=":blobcat_googly_beer_think:" />​</p>]]></description><link>https://forum.other.li/post/https://other.li/notes/amwbmnjias</link><guid isPermaLink="true">https://forum.other.li/post/https://other.li/notes/amwbmnjias</guid><dc:creator><![CDATA[monkee@other.li]]></dc:creator><pubDate>Sat, 30 May 2026 19:41:42 GMT</pubDate></item><item><title><![CDATA[Reply to the infosec people at my work are rioting because the Distant Corporate Overlord sent an email that scores 10&#x2F;10 on the phishing scale (“We want to give you a present to thank you for all your hard work! on Thu, 28 May 2026 10:17:22 GMT]]></title><description><![CDATA[<p><span><a href="https://infosec.exchange/@0xabad1dea">@<span>0xabad1dea</span></a></span><br />Here I go on a tangent about CEO gifts.</p><p>A couple years ago, a now EX-CEO proudly announced his amazing Christmas bonus for everyone.</p><p>"It will be more personal than cash!"</p><p>Yay, a disappointing box of borrel snacks, we thought.</p><p>Somehow, our team's expectations weren't low enough. Cheap corporate merch; a hoodie, a travel coffee mug, and an umbrella. They really GET ME.</p><p>So yeah, I'll bet that phishy present will be garbage anyhow.</p>]]></description><link>https://forum.other.li/post/https://mastodon.coffee/users/xinit/statuses/116651684189060124</link><guid isPermaLink="true">https://forum.other.li/post/https://mastodon.coffee/users/xinit/statuses/116651684189060124</guid><dc:creator><![CDATA[[[global:guest]]]]></dc:creator><pubDate>Thu, 28 May 2026 10:17:22 GMT</pubDate></item><item><title><![CDATA[Reply to the infosec people at my work are rioting because the Distant Corporate Overlord sent an email that scores 10&#x2F;10 on the phishing scale (“We want to give you a present to thank you for all your hard work! on Thu, 28 May 2026 10:13:36 GMT]]></title><description><![CDATA[<p><span><a href="https://infosec.exchange/@0xabad1dea">@<span>0xabad1dea</span></a></span> I think about this so much at this time of year because I help run a car show and my job is to get everyone to register their cars and pay their entry fees. I've learned that most car enthusiasts are not very tech savvy.</p><p>We have a limited time to do this and I'm coordinating hundreds of people. Here I am sending them progressively urgent emails, text messages, and occasional phone calls reminding them to confirm something, update their information, and pay their fees.</p><p>My first thought: If someone sent me these messages, I'd delete them because they look like scams.</p><p>My second thought after almost everyone does exactly what I ask them to do: "Oh shit, I'm conditioning all of these people to fall for scams."</p>]]></description><link>https://forum.other.li/post/https://sfba.social/users/sysop408/statuses/116651669323959992</link><guid isPermaLink="true">https://forum.other.li/post/https://sfba.social/users/sysop408/statuses/116651669323959992</guid><dc:creator><![CDATA[[[global:guest]]]]></dc:creator><pubDate>Thu, 28 May 2026 10:13:36 GMT</pubDate></item><item><title><![CDATA[Reply to the infosec people at my work are rioting because the Distant Corporate Overlord sent an email that scores 10&#x2F;10 on the phishing scale (“We want to give you a present to thank you for all your hard work! on Thu, 28 May 2026 10:09:22 GMT]]></title><description><![CDATA[<p><span><a href="https://infosec.exchange/@0xabad1dea">@<span>0xabad1dea</span></a></span> then there's ones from banks, government things, big brands etc.</p>]]></description><link>https://forum.other.li/post/https://mastodon.social/ap/users/115769408957777319/statuses/116651652730130471</link><guid isPermaLink="true">https://forum.other.li/post/https://mastodon.social/ap/users/115769408957777319/statuses/116651652730130471</guid><dc:creator><![CDATA[[[global:guest]]]]></dc:creator><pubDate>Thu, 28 May 2026 10:09:22 GMT</pubDate></item><item><title><![CDATA[Reply to the infosec people at my work are rioting because the Distant Corporate Overlord sent an email that scores 10&#x2F;10 on the phishing scale (“We want to give you a present to thank you for all your hard work! on Thu, 28 May 2026 09:55:44 GMT]]></title><description><![CDATA[<p><span><a href="https://infosec.exchange/@0xabad1dea">@<span>0xabad1dea</span></a></span> our phishing training started with an unannounced mail from the training site with a button saying "click here".</p><p>we were expected to click on it, to access the training.</p>]]></description><link>https://forum.other.li/post/https://mastodon.me.uk/users/fishidwardrobe/statuses/116651599124857677</link><guid isPermaLink="true">https://forum.other.li/post/https://mastodon.me.uk/users/fishidwardrobe/statuses/116651599124857677</guid><dc:creator><![CDATA[[[global:guest]]]]></dc:creator><pubDate>Thu, 28 May 2026 09:55:44 GMT</pubDate></item><item><title><![CDATA[Reply to the infosec people at my work are rioting because the Distant Corporate Overlord sent an email that scores 10&#x2F;10 on the phishing scale (“We want to give you a present to thank you for all your hard work! on Thu, 28 May 2026 09:38:17 GMT]]></title><description><![CDATA[<p>phishing training really doesn’t spend enough time on “how to structure your mass corporate communications in such a way that your employees won’t conclude that you communicate exactly like scammers and still expect a reply so they’d better assume scammy emails are legitimate”</p>]]></description><link>https://forum.other.li/post/https://infosec.exchange/users/0xabad1dea/statuses/116651530511891230</link><guid isPermaLink="true">https://forum.other.li/post/https://infosec.exchange/users/0xabad1dea/statuses/116651530511891230</guid><dc:creator><![CDATA[[[global:guest]]]]></dc:creator><pubDate>Thu, 28 May 2026 09:38:17 GMT</pubDate></item><item><title><![CDATA[Reply to the infosec people at my work are rioting because the Distant Corporate Overlord sent an email that scores 10&#x2F;10 on the phishing scale (“We want to give you a present to thank you for all your hard work! on Thu, 28 May 2026 09:37:12 GMT]]></title><description><![CDATA[<p><span><a href="https://infosec.exchange/@0xabad1dea">@<span>0xabad1dea</span></a></span> Every few months, it seems, we get email at work from an address we've never seen before, along the lines of "log into the new HR portal at [dodgy external address]", signed "HR department". Nothing to connect it to this specific employer, no names, etc. Every time I report it as obvious phishing. Every time it turns out the great and powerful overlords have signed a new contract with an even dodgier provider.</p>]]></description><link>https://forum.other.li/post/https://discordian.social/users/RogerBW/statuses/116651526212049158</link><guid isPermaLink="true">https://forum.other.li/post/https://discordian.social/users/RogerBW/statuses/116651526212049158</guid><dc:creator><![CDATA[[[global:guest]]]]></dc:creator><pubDate>Thu, 28 May 2026 09:37:12 GMT</pubDate></item></channel></rss>