Earlier quoted context omitted.
All that anti-phishing training that taught us to look closely at the URL and now it's all just safelinks.protection.outlook.com
In Europe there are legitimate and extremely established services that require you to input your bank login details into something other than your bank's website. It's madness.
Want to piss off your IT department? Are the links not malicious looking enough?
181–190 of 335 posts
Re: Want to piss off your IT department? Are the links not malicious looking enough?
#182Earlier quoted context omitted.
1Password’s default for secret questions is a sequence of English words, rather than random gibberish.
See https://xkcd.com/936/
(Writing your passwords down on paper is actually less crazy than it sounds like:
It's impossible to hack paper from the internet. And, if someone has physical access to your stuff, they could install a keylogger anyway.)
Re: Want to piss off your IT department? Are the links not malicious looking enough?
#183Re: Want to piss off your IT department? Are the links not malicious looking enough?
#184Ah no need, corporate IT already make all URLs malicious looking through some microsoft "secure link" service, and constantly shows everyone shady looking prompts that constantly change and have cmd.exe windows flash in at random. A phone call from Microsoft about my Norton anti-virus subscription putting me into debt that can only be settled with Nintendo gift cards bought in cash across 16 specific gas stations see…
All that anti-phishing training that taught us to look closely at the URL and now it's all just safelinks.protection.outlook.com
Just saying I haven't failed a phishing test in ~10 years.
Re: Want to piss off your IT department? Are the links not malicious looking enough?
#185Earlier quoted context omitted.
> And because there has been an inflation in how complimentary these letters are, people started suing when their letter wasn't flowery enough, because that somehow could be read as an implicit criticism. You got a source for this folktale?
I have no official source but know that this happens a lot. Also the arguments with the employer about the letters afterwards. Some are so fed up and let you write the first or final draft. There is also the hidden code. So instead of writing something negative which is forbidden you just use different words or leave out some intensifications. Like “zur größten Zufriedenheit” vs “zur allergrößten Zufriedenheit”. One…
Re: Want to piss off your IT department? Are the links not malicious looking enough?
#186Earlier quoted context omitted.
> And because there has been an inflation in how complimentary these letters are, people started suing when their letter wasn't flowery enough, because that somehow could be read as an implicit criticism. You got a source for this folktale?
this is common practice in general no? People ask for references, or try to contact former bosses, when hiring critical profiles. Obviously nobody will say anything bad, so HR is trained, and giving trainings to the hiring managers, how to "grade" the level of positivity. There's a difference in saying "Yes I confirm person X worked here, he did a good job on all the tasks that we have asked him to do" vs "Yes, he wa…
The German situation is especially unhinged. See https://de.wikipedia.org/wiki/Arbeitszeugnis (ask Google Translate for help, if necessary).
Re: Want to piss off your IT department? Are the links not malicious looking enough?
#187Earlier quoted context omitted.
> So, in the end, people just started giving the best possible feedback regardless of the team or manager performance. That seems to be the best possible strategy for any feedback you have to give as a captive audience? Reminds me of the feedback German companies are forced to give about their employees. It's like a formal letter of reference, but you can and will be sued if you you anything negative. Consequences ar…
> And because there has been an inflation in how complimentary these letters are, people started suing when their letter wasn't flowery enough, because that somehow could be read as an implicit criticism. You got a source for this folktale?
Re: Want to piss off your IT department? Are the links not malicious looking enough?
#188Earlier quoted context omitted.
I have firstname@lastname.email... people keep telling me that can't be right and don't i mean it ends with email.com?
I have a .ninja email and get the same a lot to the extend where I explicitly say "it ends in .ninja with no .com or anything". Usually use company-i-buy-from@mydomain.ninja whenever I make online purchases, and I had a guy from a small shop call me up and ask why I had an email with his company name on. Took some good fifteen minutes to explain him that I was legit and owned the domain. He was still reluctant in the…
then to ${my_initials}${random_few_digits}@${my_domain} to be able to hand out pre-generated email addresses of mine even offline, and bookkeep who has got which random number at my side internally.
this raised the least eyebrows so far.
Re: Want to piss off your IT department? Are the links not malicious looking enough?
#189Earlier quoted context omitted.
There's no legitimate case for that since PSD2 (mandatory since 2020). Are you not confused by that? PSD2 doesn't share your credentials. I'm an European and have never needed to use nor encountered those services.
PSD2 is just MFA, it doesn't prevent shady companies still asking your login credentials, even if you must authorize that login from your official banking app. Klarna is one of many examples - they ask me for my bank credentials on their own website so they can crawl all my finance data .
If I need to link my accounts and these services are the only choice then I change my banking passwords immediately after.
Re: Want to piss off your IT department? Are the links not malicious looking enough?
#190I reported it for phishing and I kid you not, less than 30 seconds later I got a response "Email is not suspicious"
What do you MEAN email is not suspicious? This is the most suspicious email I have ever received!