Epsilon Phishing Expeditions & Common Sense
More or less as predicted by various sources, including CBS news, here: Epsilon Story, the massive security breach of email marketer Epsilon is showing up everywhere in spear phishing attacks. The personalized phishing attacks are happening, and mind you with very professional appearance.
Even being fully familiar with the story, and having been warned by the institutions in question, you sort of do a double take when a message appears from an institution you do business with, complete with logo's and so on, looking just like an official email.
It brings back to mind the first rule of security we advocate on this site: common sense. Why should my bank need to verify my email address? Etc. Having said that, the burden on the user seems unreasonable, when the disguise is often so good. Still vigilance is the first requirement. Primitive man had his cave bears and sabre tooth tigers, and we have our computer hackers. The more it changes, the more it remains the same. It is time for secure email. No excuse not to have it.
Even being fully familiar with the story, and having been warned by the institutions in question, you sort of do a double take when a message appears from an institution you do business with, complete with logo's and so on, looking just like an official email.
It brings back to mind the first rule of security we advocate on this site: common sense. Why should my bank need to verify my email address? Etc. Having said that, the burden on the user seems unreasonable, when the disguise is often so good. Still vigilance is the first requirement. Primitive man had his cave bears and sabre tooth tigers, and we have our computer hackers. The more it changes, the more it remains the same. It is time for secure email. No excuse not to have it.




Comments