jack: (Default)
From: [personal profile] jack
What stands out to me when something goes wrong is that *most* scams are really blatant, so if someone phones you and sounds professional, it's easy to assume that its legit, and it probably is because high-quality scams are rarer, but if you're used to thinking of scams as obvious it's easy to think that you know the difference when you don't. I try to keep in mind (albeit imperfectly) what they've actually told me and if it would check out if someone described it rather than hearing someone authoritative say it

Date: 2021-07-14 12:15 pm (UTC)
simont: A picture of me in 2016 (Default)
From: [personal profile] simont
Yes. The analogue in email is that most email spams / scams / virus vehicles fail the Turing test in a really blatant way (either saying things like "the government of your country" without making a commitment to what country, or else straight-up getting it wrong like mailing the whole world in the hope that one of them will be a customer of Obscure US Bank #6316). So when one manages to contain an identifiably correct detail of your own situation, it's easy to put it on the wrong side of the line.

The one of those I came closest to being defeated by was actually formatted as a reply to an email I had genuinely sent the previous year, including the full quoted text of my actual message – but it said something fairly generic in the followup text, and had a Word document attached containing a macro virus. I guess the organisation in question must have been hacked in a way that gave the attackers access to their email archives.
Edited Date: 2021-07-14 12:15 pm (UTC)
jducoeur: (Default)
From: [personal profile] jducoeur

Yep. The one time I almost got caught was by a really, really well-designed spearphishing attack. Hackers had broken into one of my vendors, and sent a very legit-looking alert to all of their customers. I literally had typed in my password and had my finger poised to press Submit before I stopped myself and asked, "Why do they need my password for this?"

Fortunately, I had a friend in the company, so I emailed him, described what I was seeing, and about three minutes later got a reply of, "We've been hacked". And about two minutes after that, got a mail blast to the entire customer base telling them what had happened and to ignore the previous email.

July 2025

S M T W T F S
   1 2 3 4 5
6 7 89 10 11 12
13 14 15 16 17 18 19
20 21 22 23242526
2728293031  

Most Popular Tags

Style Credit

Expand Cut Tags

No cut tags
Page generated Jul. 24th, 2025 12:42 am
Powered by Dreamwidth Studios