{"id":242,"date":"2018-04-12T05:15:19","date_gmt":"2018-04-12T05:15:19","guid":{"rendered":"https:\/\/www.netandhost.com\/blog\/?p=242"},"modified":"2018-04-12T05:19:33","modified_gmt":"2018-04-12T05:19:33","slug":"email-phishing-related-is-your-mailbox-safe","status":"publish","type":"post","link":"https:\/\/netandhost.com\/blog\/2018\/04\/12\/email-phishing-related-is-your-mailbox-safe\/","title":{"rendered":"Email Phishing related: Is Your Mailbox Safe?"},"content":{"rendered":"<p><img loading=\"lazy\" decoding=\"async\" class=\"size-medium wp-image-243 alignright\" src=\"https:\/\/www.netandhost.com\/blog\/wp-content\/uploads\/2018\/04\/emailsec-300x217.jpg\" alt=\"\" width=\"300\" height=\"217\" \/><\/p>\n<p>By now, most everyone has heard of \u201cphishing,\u201d the act of defrauding an online account holder by posing as a legitimate company or person. Simply put, it\u2019s when bad guys pretend to be someone or something they\u2019re not to steal from you or your company.<\/p>\n<p>They\u2019ll use \u201cspoofed\u201d email addresses, websites and attachments to convince you to give them personal information, financial details, account passwords and even wire transfers. These criminals use advanced tactics and social engineering to learn about you and your company so they can present tailored information you wouldn\u2019t think to double check.<\/p>\n<p>\u201cSpear phishing\u201d is even more egregious, appearing to originate from within your company or your domain and targeting a specific person or company.<\/p>\n<p>Examples can include what appear to be:<\/p>\n<ul>\n<li>your IT guy asking you to login to a system or website,<\/li>\n<li>your boss asking you to \u201copen the attached document,\u201d or<\/li>\n<li>your CEO asking you to initiate a wire transfer to one of your vendors.<\/li>\n<\/ul>\n<p>Because it\u2019s so effective, phishing and spear phishing attacks continue to rise exponentially.<\/p>\n<p>Part of the problem lies with us. Because we know what phishing is, we think we\u2019re not susceptible \u2014 it only happens to other people, to dupes who aren\u2019t paying attention.<\/p>\n<p>But when we think it can\u2019t happen to us, we let our guard down \u2014 and then we become most susceptible. Just ask the now-infamous <a href=\"http:\/\/bigstory.ap.org\/article\/f50ded283c41465d9bdfe0f393732ce1\/mattel-fought-elusive-cyber-thieves-get-3m-out-china\">Mattel executive who wired $3 million to a scammer<\/a>.<\/p>\n<p>\u201cEmail is such a common and trusted form of business communication that employees are extremely susceptible to spear phishing,\u201d noted a recent report from Cloudmark, a SGS Email Partner and leader in the anti-spam industry. That report found fully 94 percent of companies surveyed acknowledged that their employees have fallen for a contrived phishing attack.<\/p>\n<p>So \u2014 still think this can\u2019t happen to you?<\/p>\n<h3><strong>What can you do?<\/strong><\/h3>\n<p>This is Subba&#8217;s stuff, but you can fight back. If you (and your colleagues or employees) look for the signs of phishing and practice basic email hygiene, staying safe is actually pretty easy. The best way to combat phishing is just exercising common sense.<\/p>\n<p>Here are a few tips to keep you on your toes.<\/p>\n<p><strong>Do not share personal information! EVER!<\/strong><\/p>\n<p>This really cannot be emphasized enough. Never respond to an email with personal information, financial information or passwords. Ever. Think about the risk-to-reward ratio. Is the upside of quickly sending this info worth the risk? Remember \u2014 NO reputable company will EVER ask for these details in an email.<\/p>\n<p><strong>Visit websites directly from browsers and bookmarks \u2013 not email.<\/strong><\/p>\n<p>Whenever possible, avoid clicking a link in an email to login to an account. It\u2019s easy to misrepresent where that link may be taking you. A link might say \u201cPayPal.com,\u201d but it\u2019s really pointing at \u201cPeyPals.com.\u201d<\/p>\n<p>A quick way to double check a link\u2019s actual destination is to move your mouse over it. In most cases, your browser or email application will show you the true path.<\/p>\n<p><img loading=\"lazy\" decoding=\"async\" class=\"alignnone wp-image-40774 size-full td-animation-stack-type0-2\" src=\"https:\/\/blog.rackspace.com\/wp-content\/uploads\/2016\/06\/phishing-image.png\" sizes=\"auto, (max-width: 589px) 100vw, 589px\" srcset=\"https:\/\/blog.rackspace.com\/wp-content\/uploads\/2016\/06\/phishing-image.png 589w, https:\/\/blog.rackspace.com\/wp-content\/uploads\/2016\/06\/phishing-image-150x65.png 150w, https:\/\/blog.rackspace.com\/wp-content\/uploads\/2016\/06\/phishing-image-300x130.png 300w\" alt=\"p\" width=\"589\" height=\"256\" \/><\/p>\n<p>If you\u2019re logging in to your bank or other website, access the site directly instead of clicking a link in an email. Be especially suspicious of emails asking you to click a link to confirm your account information.<\/p>\n<p><strong>Double-check attachments before you click or download them.<\/strong><\/p>\n<p>Be careful with attachments. Word documents and Excel spreadsheets may contain macros or viruses that compromise your computer. These files can automatically download malware or direct you to malicious websites. If an email or attachment looks even the least bit suspicious (misspellings? See below), confirm its origin with the sender. Call, text or message them before you click.<\/p>\n<p>Also, it is critical to have anti-virus software installed and up-to-date on your computer.<\/p>\n<p><strong>Watch for misspellings and urgency.<\/strong><\/p>\n<p>Although it\u2019s not a hard and fast rule, poor grammar can often be a tell-tale sign of phishing. Look for unusual use of words, misspelling or even strange greetings (Hello Madam!). Also, be suspicious of an email that evokes a sense of urgency and asks you to do something right away.<\/p>\n<p><strong>When it comes to wire transfers, be extra vigilant.<\/strong><\/p>\n<p>The vast majority of people do not wire money as part of their day-to-day duties. So if you\u2019re asked for a wire transfer, that should immediately raise a red flag. Double-check the request, OUTSIDE OF EMAIL, before you do anything. If you\u2019re in the business of transferring money, never rely on email as a secure communication channel for these requests. Always confirm through alternative means.<\/p>\n<p><strong>When in doubt\u2026 DO NOTHING!<\/strong><\/p>\n<p>Being unsure and still clicking around suspicious emails can be disastrous. Take the\u00a0time to be vigilant; confirming an email\u2019s origin and intent can save you, and your company, a ton of grief (and maybe even money). If you have even an iota of doubt \u2013 DON\u2019T CLICK\u00a0ANYTHING. Delete the email, and pick up the phone.<\/p>\n<p>Maybe more than ever before, the old adage holds true: when it comes to email and phishing it is truly better to be safe than sorry.<\/p>\n<p>For more information or if you have any queries, please feel free to write an email to us @ <a href=\"mailto:support@netandhost.com\">support@netandhost.com<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>By now, most everyone has heard of \u201cphishing,\u201d the act of defrauding an online account holder by posing as a legitimate company or person. Simply put, it\u2019s when bad guys pretend to be someone or something they\u2019re not to steal from you or your company. They\u2019ll use \u201cspoofed\u201d email addresses, websites and attachments to convince [&hellip;]<\/p>\n","protected":false},"author":2,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[],"tags":[],"class_list":["post-242","post","type-post","status-publish","format-standard","hentry"],"_links":{"self":[{"href":"https:\/\/netandhost.com\/blog\/wp-json\/wp\/v2\/posts\/242","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/netandhost.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/netandhost.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/netandhost.com\/blog\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/netandhost.com\/blog\/wp-json\/wp\/v2\/comments?post=242"}],"version-history":[{"count":1,"href":"https:\/\/netandhost.com\/blog\/wp-json\/wp\/v2\/posts\/242\/revisions"}],"predecessor-version":[{"id":244,"href":"https:\/\/netandhost.com\/blog\/wp-json\/wp\/v2\/posts\/242\/revisions\/244"}],"wp:attachment":[{"href":"https:\/\/netandhost.com\/blog\/wp-json\/wp\/v2\/media?parent=242"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/netandhost.com\/blog\/wp-json\/wp\/v2\/categories?post=242"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/netandhost.com\/blog\/wp-json\/wp\/v2\/tags?post=242"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}