4 ms·
> they target pretty much everyone, and nothing demonstrates this better that generic, “un-targeted” phishing e-mails. Had to stop there, this is written like
by darkclouds 3y ago
> they target pretty much everyone, and nothing demonstrates this better that generic, “un-targeted” phishing e-mails.
Had to stop there, this is written like its a given, that there is no way to avoid phishing emails when there is. There's plenty of ways and alot of the criminality is maintained by those who dominate the sector, via standards or solutions.
>either immediately or very soon after they are delivered to their first recipients – detected and blocked by any security solution worth the name
I've always been taught ignorance of the law is no defence of the law, so unwarranted data sharing is ignoring various laws.
"Articles 13 and 14 of the GDPR require you to tell data subjects who you share the personal data with (the recipients or categories of recipients of the personal data)."
The email systems and associated security products, namely anti spam and anti virus software/services are knowingly breaking the law with a recipient that chooses to employ said service to scan their emails.
Everybody on the planet who has an email address and an AS/AV scanner is breaking the law, but I guess hypocrisy can be overlooked even in the best educational establishments, whilst ignoring the ill thought out nature of law in a global world.
>JavaScript loaded from the external domain was not as simple as the rest of the attack (it was heavily obfuscated and "weight in" at 155 kB)
I guess dialup is still an issue for some.
>Proving that the cost of committing cybercrime can be really low.
I'll agree on that.