#phishingprevention โ Public Fediverse posts
Live and recent posts from across the Fediverse tagged #phishingprevention, aggregated by home.social.
-
@patrickcmiller : there is nothing sophisticated about this attack; it is business as usual.
I'm tired of C-Level people with thick wallets who know shit.
A zoom in of the screenshot at the top of https://specopssoft.com/blog/phishing-campaign-cisco/ can be seen below.
The browser's address bar clearly shows that http is used (instead of https) but more importantly, the domain name is:
tradixyu.cfd
Instead of complaining and looking for excuses, we need to fix the Internet as I wrote in (among other places) https://todon.nl/@ErikvanStraten/115656812871207370.
#Phishing #PhishingPrevention #GoogleIsEvil #BigTechIsEvil #CloudflareIsEvil #LetsEncryptIsEvil
-
@patrickcmiller : there is nothing sophisticated about this attack; it is business as usual.
I'm tired of C-Level people with thick wallets who know shit.
A zoom in of the screenshot at the top of https://specopssoft.com/blog/phishing-campaign-cisco/ can be seen below.
The browser's address bar clearly shows that http is used (instead of https) but more importantly, the domain name is:
tradixyu.cfd
Instead of complaining and looking for excuses, we need to fix the Internet as I wrote in (among other places) https://todon.nl/@ErikvanStraten/115656812871207370.
#Phishing #PhishingPrevention #GoogleIsEvil #BigTechIsEvil #CloudflareIsEvil #LetsEncryptIsEvil
-
@maaikees : unfortunately, no. If such a solution would exist, spammers and phisher-(wo)men would immediately start using it.
Using an email provider with a good reputation *or* (evil) big tech is your best bet.
Note: when switching email provider, first make a list of *all* websites where you have an account, either with the old email address as user-ID or another user-ID but where the old email address can be used for password resets.
It's okay to create a new email address (using another provider and domain name), but do not close your old email account until it has been removed (or replaced by your new address) from all websites where it may be used to authenticate you.
My advice: use a password manager (*). Apart from other advantages, if you record in it every site where you enter your email address, you'll have a nice overview of sites that know your email address.
(*) Full list of tips:
Dutch: https://security.nl/posting/912904English: see the list in https://todon.nl/@ErikvanStraten/115611078608008423
-
@maaikees : unfortunately, no. If such a solution would exist, spammers and phisher-(wo)men would immediately start using it.
Using an email provider with a good reputation *or* (evil) big tech is your best bet.
Note: when switching email provider, first make a list of *all* websites where you have an account, either with the old email address as user-ID or another user-ID but where the old email address can be used for password resets.
It's okay to create a new email address (using another provider and domain name), but do not close your old email account until it has been removed (or replaced by your new address) from all websites where it may be used to authenticate you.
My advice: use a password manager (*). Apart from other advantages, if you record in it every site where you enter your email address, you'll have a nice overview of sites that know your email address.
(*) Full list of tips:
Dutch: https://security.nl/posting/912904English: see the list in https://todon.nl/@ErikvanStraten/115611078608008423
-
๐๐๐ฏ๐ฒ๐ฟ ๐ฆ๐ฒ๐ฐ๐๐ฟ๐ถ๐๐ ๐ง๐ฟ๐ฎ๐ถ๐ป๐ถ๐ป๐ด: ๐๐ฑ๐ฒ๐ป๐๐ถ๐ณ๐๐ถ๐ป๐ด ๐ฎ๐ป๐ฑ ๐ฃ๐ฟ๐ฒ๐๐ฒ๐ป๐๐ถ๐ป๐ด ๐ ๐ผ๐ฑ๐ฒ๐ฟ๐ป ๐ง๐ต๐ฟ๐ฒ๐ฎ๐๐
#CyberSecurity #DataProtection #MalwareAwareness #InformationSecurity #RemoteWorkSafety #CyberTraining #TechSecurity #PhishingPrevention
-
๐๐๐ฏ๐ฒ๐ฟ ๐ฆ๐ฒ๐ฐ๐๐ฟ๐ถ๐๐ ๐ง๐ฟ๐ฎ๐ถ๐ป๐ถ๐ป๐ด: ๐๐ฑ๐ฒ๐ป๐๐ถ๐ณ๐๐ถ๐ป๐ด ๐ฎ๐ป๐ฑ ๐ฃ๐ฟ๐ฒ๐๐ฒ๐ป๐๐ถ๐ป๐ด ๐ ๐ผ๐ฑ๐ฒ๐ฟ๐ป ๐ง๐ต๐ฟ๐ฒ๐ฎ๐๐
#CyberSecurity #DataProtection #MalwareAwareness #InformationSecurity #RemoteWorkSafety #CyberTraining #TechSecurity #PhishingPrevention
-
If AI can spoof your people, your processes, and your communications, whatโs left to trust?
In the next Cyberside Chats: Live, Sherri Davidoff and Matt Durrin break down the identity upgrades every organization needs for 2026: tighter verification, stronger authentication, and user training built for an era where old phishing cues no longer apply.
Register here to join us on December 17th: https://www.lmgsecurity.com/event/cyberside-chats-live-ai-broke-trust-identity-has-to-step-up-in-2026/
#CybersideChats #AIImpersonation #IdentityManagement #AccessControl #SecurityAwareness #PhishingPrevention #EnterpriseSecurity #CyberRisk
-
Quishing #Scams: How To Prevent #QRCode Attacks in Your #SMB
#cybersecurity #phishingprevention #quishing
Did you know #QRcodes are now one of the most common sources of #cyberscams? -
Quishing #Scams: How To Prevent #QRCode Attacks in Your #SMB
#cybersecurity #phishingprevention #quishing
Did you know #QRcodes are now one of the most common sources of #cyberscams? -
Microsoft Outlook is taking bold action by blocking inline SVG images after a staggering 1800% rise in phishing attacks. Could this be the key to safer inboxes?
#outlooksecurity
#svgphishing
#emailsecurity
#cyberthreats
#phishingprevention -
Microsoft Outlook is taking bold action by blocking inline SVG images after a staggering 1800% rise in phishing attacks. Could this be the key to safer inboxes?
#outlooksecurity
#svgphishing
#emailsecurity
#cyberthreats
#phishingprevention -
Hardening My Domain Email with SPF, DKIM, DMARC
After spotting spoofed emails from my domain, I finally secured islandinthenet.com with SPF, DKIM, and DMARC.
-
Security Pattern: Email Spoofing Protection via DMARC, SPF, and DKIM
This post outlines a practical email security pattern using SPF, DKIM, and DMARC to stop spoofing and protect your domainโs reputation.
https://islandinthenet.com/security-pattern-email-spoofing-protection-via-dmarc-spf-and-dkim/
-
For defending against phishing campaigns, you've got to have sensible security rules in place and a good overall security practice in your organization. You also need to be running EDR tools (EDR/XDR) and edge protection. These practices will all help, though they are not a silver bullet against the problem.
Be aware as a practitioner if DNS over HTTPS is becoming more present on your network. If you control your own DNS resolver, that's the best way to go.
DNS is really your friend as a security practitioner.
Listen to the full episode of the Breaking Badness Cybersecurity Podcast here: https://www.domaintools.com/resources/podcasts/morphing-meerkat-proton66-how-cybercrime-is-getting-easier/?utm_source=Mastodon&utm_medium=Social&utm_campaign=Proton66
#DNS #cybersecurity #infosec #infosecurity #phishing #phishingprotection #phishingprevention
-
For defending against phishing campaigns, you've got to have sensible security rules in place and a good overall security practice in your organization. You also need to be running EDR tools (EDR/XDR) and edge protection. These practices will all help, though they are not a silver bullet against the problem.
Be aware as a practitioner if DNS over HTTPS is becoming more present on your network. If you control your own DNS resolver, that's the best way to go.
DNS is really your friend as a security practitioner.
Listen to the full episode of the Breaking Badness Cybersecurity Podcast here: https://www.domaintools.com/resources/podcasts/morphing-meerkat-proton66-how-cybercrime-is-getting-easier/?utm_source=Mastodon&utm_medium=Social&utm_campaign=Proton66
#DNS #cybersecurity #infosec #infosecurity #phishing #phishingprotection #phishingprevention
-
๐ Come i browser utilizzano la psicologia per contrastare il phishing, proteggendo i tuoi dati online! #SicurezzaWeb #PhishingPrevention
๐ https://www.tomshw.it/hardware/come-i-browser-combattono-i-phishing-con-la-psicologia-2025-05-02
-
Phishing attacks are getting smarter, but you can stay ahead. In the final part of Rachel Rabinโs blog series, find practical advice to spot and stop email threats in Microsoft 365: https://www.pentestpartners.com/security-blog/bec-ware-the-phish-part-3-detect-and-prevent-incidents-in-m365/
Hereโs whatโs inside:
๐Understanding how phishing emails bypass existing controls and fine-tune your anti-malware policies.
๐ Configure Defender for Office and Defender for Cloud Apps with customised threat and alert policies to effectively prevent and detect email-based attacks.
โก Go beyond default settingsโuse KQL to identify noisy policies and refine rule scope or sensitivity for better precision.
#PhishingPrevention #EmailSecurity #Microsoft365 #CyberThreats #CyberSecurityTips #StaySecure #PhishingAwareness #M365Security #CyberResilience #SpotThePhish
-
Did you know that over 90% of cyber attacks begin with a phishing email? ๐ณ It's no wonder that Americans are concerned about online security. ๐ ๐จ
Check out more insights from our recent survey: https://www.startmail.com/email-privacy-survey/
-
Did you know that over 90% of cyber attacks begin with a phishing email? ๐ณ It's no wonder that Americans are concerned about online security. ๐ ๐จ
Check out more insights from our recent survey: https://www.startmail.com/email-privacy-survey/