Plenty of Phish in the Sea 0
Above the Law explores the successful phishing attack on Robinhood (the investment outfit, not the outlaw of legend) and discusses some of the methods used by the attackers. The article is oriented towards attacks on businesses, but, as spams and scams seem to be increasing against both businesses and individuals, the article is well worth your while.
Here’s a bit (the article’s business orientation in clear in this snippet):
Successful phishing subject lines included these in the top 10 for 2021:
a. Password Check Required Immediately
b. Vacation Policy Update
c. Important: Dress Code Changes
d. ACH Payment Receipt
e. Test of the (insert law firm name) Emergency Notification System
f. Scheduled Server Maintenance – No Internet Access
g. COVID-10 Remote Work Policy Update
h. Scanned Image from (insert domain name)
i. Security Alert
j. Failed Delivery
While on the subject of spams and scams, I will mention that some of our most frequent callers in recent weeks has been auto warranty scammers. And now they are using the U. S. mail.
In the past three days, I’ve gotten three official-looking letters telling me that my warranty is about to expire (it’s not; I checked just on general principles) and directing me to call a toll-free number (I didn’t). The three letters had one feature in common.
No return address.
There was official looking verbiage where the return address was supposed be, but nowhere in any of them was a mailing address for a place of business.
(Syntax error corrected.)