Phishing attacks are not static

Time to add another chapter to my Phishing Email Primer:

It is being reported that threat actors have been using a new targeting tactic to sort through victims who have been ensnared by their social engineering attacks. When presented with the malicious credentials Window, only those high-value victims who have been verified pass onto the phishing process, others are excluded:

Phishing kits now vet victims in real-time before stealing credentials – BleepingComputer

Your Takeaway

Do not let your senior managers or board members – or other high value targets – avoid the Cyber Security Awareness Training you provide.

You do not run cyber security awareness training? Then have a read of this:

Clive Catton MSc (Cyber Security) – by-line and other articles

Further Reading