Frank Murray retweetledi

Our IT department has weaponized my love of free food.
They send out internal phishing test emails to see who will click malicious links.
The first one was an email from UPS about a missed package.
I didn't click it.
I'm a professional.
The second one was a notice about mandatory password resets.
I ignored it.
I know how SSO works.
But yesterday, they sent an email titled "Leftover catering in the third-floor breakroom."
It included a button to RSVP for a slice of gourmet cheesecake.
I clicked it so fast my mouse almost broke.
Instead of cheesecake, I got a red screen telling me I had failed a cybersecurity drill.
Now I have to take a 45-minute online training module about email vigilance.
This is pure entrapment.
If you promise an engineer free dairy products, all threat models go out the window.
English




























































