• arotrios@lemmy.world
    link
    fedilink
    English
    arrow-up
    30
    ·
    5 days ago

    They do this at my work. I simply report every external email I get as a phishing attempt.

    As a result, I’ve caught all the fake phishing emails sent by our IT department, at the minor cost of them having to clear 50+ legit emails per day. My coworkers have been quite appreciative of my tactics against phishing, and have started to adopt my methods.

    Strangely enough, the number of phishing tests IT has sent out has dramatically decreased since I was initially hired.

    • cabillaud@lemmy.world
      link
      fedilink
      English
      arrow-up
      1
      ·
      3 days ago

      Acting in bad faith and objectively generate an avoidable workload for colleagues would be a legit reason to get fired where I live

    • Bytemeister@lemmy.world
      link
      fedilink
      English
      arrow-up
      7
      ·
      edit-2
      5 days ago

      Eh, the system that gives you the sticker is automated, and the system that tracks flagged emails is mostly ignored. If reporting everything makes you feel better, please continue to do so.

      • Trainguyrom@reddthat.com
        link
        fedilink
        English
        arrow-up
        2
        ·
        4 days ago

        Depends on how it’s configured. I had one job where the “report phishing” button would generate a ticket so that we could review and block new bad actors and bad domains

        • toddestan@lemm.ee
          link
          fedilink
          arrow-up
          1
          ·
          4 days ago

          I wish the company I worked for had some system like that. I know they have a system for quarantining suspicious emails because every once and a while it’ll flag and quarantine something. But almost everything sails right through. You’d think the cybersecurity department would put more effort into one of their first lines of defense, but instead it’s more fake phishing emails.