generalcanada
Senior Member
2 It admin storiesThe bank I work for does the random email tests, apparently there's a 80 percent pass rate which now requires not only not clicking the links, but also to actively report it as phishing too (there's a click button in Outlook they added for that).
More recently they've been doing phone tests too, with people calling in doing the old "Oh hi it's [insert name of actual employee] here. I'm rushing from a meeting to another right now with [insert actual client name] so can you quickly give me their account number so I can look it up on the system?"
- executive assistant bought $1k in apple gift cards because the "ceo" emailed her.
- as part of a pentest someone willingly gave up a password to someone over the phone because they impersonated me.
sigh...dont go into cybersecurity unless you really want to learn how true George Carlins quote actually is.




