Live data from Hacker News

Want to piss off your IT department? Are the links not malicious looking enough?

phishyurl.com

61–70 of 335 posts

Re: Want to piss off your IT department? Are the links not malicious looking enough?

#61

Earlier quoted context omitted.

I had the opposite funny experience. When I worked for Global MegaCorp, they would occasionally send out phishing emails and if you clicked on a link it would be recorded and you would have to do trainings if you got fooled a couple times. Eventually everyone learned to stop clicking on links on emails. That's good. However, they sent out a yearly survey to get feedback from all the employees and no one clicked the l…

The way they used to handle that at a FAANG I worked for was they had this app installed on each machine issued by IT, that would ask you a question daily about some aspect of your workplace. Handles all the phishing concerns, except that participation was either low or the feedback was negative, which would lead to the leaders issuing subtle threats to the team about how they'd find out the involved folks and fire t…

Somehow this and the parent both represent Amazon. Daily questions and a yearly survey that security had to assure us was legit.

Re: Want to piss off your IT department? Are the links not malicious looking enough?

#63

After half a decade on discord... What are the odds of me being banned for sending a ragebait google redirect to my buddies?

If you come up with an idea to piss others off, you'll succeed 90% of the time.

The other 10% are people who are just like you and know better.

Re: Want to piss off your IT department? Are the links not malicious looking enough?

#64
post #9

Not bad! https://carnalflicks.online/var/lib/systemd/coredump/logging...

Not going to lie, I was expecting this[1]. Maybe it's just not done on HN. 1: https://pc-helper.xyz/scanner-snatcher/session-snatcher/cred...

You innocent young being. There are some gaping holes in your Internet lore knowledge, but it's been eons since that's been seen in the wild.

Re: Want to piss off your IT department? Are the links not malicious looking enough?

#65
post #9

Not bad! https://carnalflicks.online/var/lib/systemd/coredump/logging...

Not going to lie, I was expecting this[1]. Maybe it's just not done on HN. 1: https://pc-helper.xyz/scanner-snatcher/session-snatcher/cred...

Oh I figured it was gonna be this one: https://cam-xxx.live/rootkit-injector/evil-controller/payloa...

Re: Want to piss off your IT department? Are the links not malicious looking enough?

#67

Earlier quoted context omitted.

I had the opposite funny experience. When I worked for Global MegaCorp, they would occasionally send out phishing emails and if you clicked on a link it would be recorded and you would have to do trainings if you got fooled a couple times. Eventually everyone learned to stop clicking on links on emails. That's good. However, they sent out a yearly survey to get feedback from all the employees and no one clicked the l…

The way they used to handle that at a FAANG I worked for was they had this app installed on each machine issued by IT, that would ask you a question daily about some aspect of your workplace. Handles all the phishing concerns, except that participation was either low or the feedback was negative, which would lead to the leaders issuing subtle threats to the team about how they'd find out the involved folks and fire t…

> So, in the end, people just started giving the best possible feedback regardless of the team or manager performance.

That seems to be the best possible strategy for any feedback you have to give as a captive audience?

Reminds me of the feedback German companies are forced to give about their employees. It's like a formal letter of reference, but you can and will be sued if you you anything negative. Consequences are as you would expect.

And because there has been an inflation in how complimentary these letters are, people started suing when their letter wasn't flowery enough, because that somehow could be read as an implicit criticism. (Just like how A is a bad mark, when everyone else gets A+.)

Re: Want to piss off your IT department? Are the links not malicious looking enough?

#68
post #52

Earlier quoted context omitted.

I had the opposite funny experience. When I worked for Global MegaCorp, they would occasionally send out phishing emails and if you clicked on a link it would be recorded and you would have to do trainings if you got fooled a couple times. Eventually everyone learned to stop clicking on links on emails. That's good. However, they sent out a yearly survey to get feedback from all the employees and no one clicked the l…

In New Zealand, there is a long list of companies who need to reach out to a large number of current and former employees, and try to convince them to go to a website and enter sensitive information to receive some money (1). Where I'm working, we found it hard, even for current employees, to convince them that it's not either phishing, or a phishing test. This is getting off-topic, but I found it interesting so I'll…

If the amounts are so tiny, couldn't the company just voluntarily overpay everyone by three dollars a year and call it a day?

Re: Want to piss off your IT department? Are the links not malicious looking enough?

#70
post #60

Reminds me of working at a company blocking access to eBay because their URL had .dll in there. Also, we were thought to inspect the URL before clicking on it. Except that the spam system they use completely mangles the URL...

> Except that the spam system they use completely mangles the URL... I hate this trend. Like an overused pool of the same "Secret Questions" every company asks, it needs to be on some "X considered harmful" list.

I usually just ask my password generator to generate another random password for the secret question's answer.
Post reply on HN