On 2021-09-23 11:25 a.m., Robert L Mathews via mailop wrote:
Or "This message is verified as being from gmail.com, but there's no
previous message [email protected] in your mailbox."
For the record, the scammers are trickier than that, they take an old
thread from the compromised account, and simply add the phishing lure to
it now..
But of course, all email 'clients' are working towards better
understanding and presentation of emails, and webmail's also need to
keep up.
But we need to do more to stop the compromise in the first place, or
recognize it immediately, because the damage is already done, even
BEFORE they attempt to 'phish' other users from that account.
Frankly, all the measures we do can REDUCE the amount, but until
transparent 2FA is routinely used, they still will be only stop gap
measures.
Of course, reducing by over 95% is still a win.
Platform vendors need to make that 95% savings simpler to the
administrator. but of course recouping that investment is the hard part,
especially when the bad guys can rent a 'phishing' service for less than
the cost of one hour of development time.
IMHO not enough government and policing goes into stopping these
threats, otherwise all the Digital Ocean 'phishing' platform would have
been shut down by now ;)
--
"Catch the Magic of Linux..."
------------------------------------------------------------------------
Michael Peddemors, President/CEO LinuxMagic Inc.
Visit us at http://www.linuxmagic.com @linuxmagic
A Wizard IT Company - For More Info http://www.wizard.ca
"LinuxMagic" a Registered TradeMark of Wizard Tower TechnoServices Ltd.
------------------------------------------------------------------------
604-682-0300 Beautiful British Columbia, Canada
This email and any electronic data contained are confidential and intended
solely for the use of the individual or entity to which they are addressed.
Please note that any views or opinions presented in this email are solely
those of the author and are not intended to represent those of the company.
_______________________________________________
mailop mailing list
[email protected]
https://list.mailop.org/listinfo/mailop