PaulDotCom mailing list archives

How to Proactivly protect against Phising attacks?


From: tkrabec at gmail.com (Tim Krabec)
Date: Thu, 18 Dec 2008 08:40:42 -0500

I would
1.  create a fake email account that gets sent to IT, so you can get
included on the phishing scams.
2.  educate users on phishing scams
3.  inform people the 2 or 3 ways of contacting IT, and how you will contact
them, ie any phone number or email address changes will be on paper in their
inner office emails, as well as on posters in the break rooms, etc.
4.  block emails at the gateway that are not supposed to be there ie
internal looking emails.
5.  block emails from domains that are similar to the spelling of yours
6.  Pretend to be a phisher and do at least a pen and paper figure out how
to send phishing emails to your people.

-- 
Tim Krabec
Kracomp
772-597-2349
smbminute.com
kracomp.blogspot.com
www.kracomp.com
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://mail.pauldotcom.com/pipermail/pauldotcom/attachments/20081218/60640bb7/attachment.htm 


Current thread: