{"id":3652,"date":"2019-08-17T13:46:02","date_gmt":"2019-08-17T01:46:02","guid":{"rendered":"https:\/\/kinetics.co.nz\/?p=3652"},"modified":"2019-08-17T13:46:02","modified_gmt":"2019-08-17T01:46:02","slug":"would-you-click-on-either-of-these","status":"publish","type":"post","link":"https:\/\/new.kinetics.co.nz\/?p=3652","title":{"rendered":"Would you click on either of these?"},"content":{"rendered":"<p>[et_pb_section fb_built=&#8221;1&#8243; admin_label=&#8221;section&#8221; _builder_version=&#8221;3.22&#8243;][et_pb_row admin_label=&#8221;row&#8221; _builder_version=&#8221;3.25&#8243; background_size=&#8221;initial&#8221; background_position=&#8221;top_left&#8221; background_repeat=&#8221;repeat&#8221;][et_pb_column type=&#8221;4_4&#8243; _builder_version=&#8221;3.25&#8243; custom_padding=&#8221;|||&#8221; custom_padding__hover=&#8221;|||&#8221;][et_pb_text admin_label=&#8221;Text&#8221; _builder_version=&#8221;4.9.1&#8243; background_size=&#8221;initial&#8221; background_position=&#8221;top_left&#8221; background_repeat=&#8221;repeat&#8221; hover_enabled=&#8221;0&#8243; sticky_enabled=&#8221;0&#8243;]<\/p>\n<p><strong>You are most vulnerable when you are busy<\/strong>, frantically jumping from call to call, meeting to meeting, distraction to distraction. \u00a0 So when you get a dodgy email,\u00a0 it&#8217;s very easy to open it.<\/p>\n<p>This morning, that was me! \u00a0 And, even as hyper-aware as I am, I still *nearly* clicked on it.<\/p>\n<p><img loading=\"lazy\" decoding=\"async\" class=\"wp-image-3653 size-full alignright\" src=\"http:\/\/kinetics.co.nz\/wp-content\/uploads\/2019\/06\/phishing.jpg\" alt=\"\" width=\"1079\" height=\"443\" \/><\/p>\n<p>Thankfully (or rather &#8211; thanks to Microsoft ATP) , the message &#8216;unsafe attachments blocked&#8217; was a good warning.<\/p>\n<p>Then of course, a closer inspection tells the story &#8211; firstly, our voice messages look very different to this, AND we haven&#8217;t changed the system lately, and thirdly, that email address is really suspect.<\/p>\n<p>The point is, <strong>even though those clues are VERY obvious,\u00a0 the busier you are, the more vulnerable you are.<\/strong> \u00a0 The more layers of security we can add, the more risk we can reduce (but alas, never eliminate)<\/p>\n<p>&nbsp;<\/p>\n<p>Then I received this little beauty \u2026\u00a0 its just the &#8216;admin-alerts&#8217; in the email source that stands out &#8211; everything else looks legitimate.<\/p>\n<p><a href=\"http:\/\/kinetics.co.nz\/wp-content\/uploads\/2019\/08\/SneakyPhishing.jpg\"><img loading=\"lazy\" decoding=\"async\" class=\"wp-image-3706 alignnone\" src=\"http:\/\/kinetics.co.nz\/wp-content\/uploads\/2019\/08\/SneakyPhishing.jpg\" alt=\"\" width=\"615\" height=\"579\" \/><\/a><\/p>\n<p>&nbsp;<\/p>\n<p>&nbsp;<\/p>\n<p>If you then follow the link, say to look at the quarantine page\u00a0(which, by the way, is spelt incorrectly in the email), it takes you to a page that looks legitimate, where you would enter your login details to access the logs &#8211; which almost seems sensible, except again the URL of the page is clearly false.<\/p>\n<p>&nbsp;<\/p>\n<p><strong>Very sneaky and almost looks legitimate.\u00a0 You have to be so careful.<\/strong><\/p>\n<p>However, using a tool like &#8220;message header analyser&#8221;, you can quickly see there is nothing legitimate about it.<\/p>\n<p><strong>Please be on your guard!<\/strong><\/p>\n<p>&nbsp;<\/p>\n<p><a href=\"http:\/\/kinetics.co.nz\/wp-content\/uploads\/2019\/08\/MHA1.png\"><img loading=\"lazy\" decoding=\"async\" class=\" wp-image-3710 aligncenter\" src=\"http:\/\/kinetics.co.nz\/wp-content\/uploads\/2019\/08\/MHA1.png\" alt=\"\" width=\"701\" height=\"502\" \/><\/a><\/p>\n<p>&nbsp;<\/p>\n<p><a href=\"http:\/\/kinetics.co.nz\/wp-content\/uploads\/2019\/08\/MHA2.png\"><img loading=\"lazy\" decoding=\"async\" class=\"wp-image-3711 aligncenter\" src=\"http:\/\/kinetics.co.nz\/wp-content\/uploads\/2019\/08\/MHA2.png\" alt=\"\" width=\"590\" height=\"634\" \/><\/a><\/p>\n<p>[\/et_pb_text][\/et_pb_column][\/et_pb_row][\/et_pb_section]<\/p>\n","protected":false},"excerpt":{"rendered":"<p>You are most vulnerable when you are busy, frantically jumping from call to call, meeting to meeting, distraction to distraction. \u00a0 So when you get a dodgy email,\u00a0 it&#8217;s very easy to open it. This morning, that was me! \u00a0 And, even as hyper-aware as I am, I still *nearly* clicked on it. Thankfully (or [&hellip;]<\/p>\n","protected":false},"author":5,"featured_media":1716,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_et_pb_use_builder":"on","_et_pb_old_content":"<strong>You are most vulnerable when you are busy<\/strong>, frantically jumping from call to call, meeting to meeting, distraction to distraction. \u00a0 So when you get a dodgy email,\u00a0 it's very easy to open it.\n\n[header2 text=\"This morning, that was me! \u00a0 And, even as hyper-aware as I am, I still *nearly* clicked on it.\" align=\"left\" color=\"#336A40\" margintop=\"\"]\n\n<img class=\"wp-image-3653 size-full alignright\" src=\"http:\/\/kinetics.co.nz\/wp-content\/uploads\/2019\/06\/phishing.jpg\" alt=\"\" width=\"1079\" height=\"443\" \/>\n\nThankfully (or rather - thanks to Microsoft ATP) , the message 'unsafe attachments blocked' was a good warning.\n\nThen of course, a closer inspection tells the story - firstly, our voice messages look very different to this, AND we haven't changed the system lately, and thirdly, that email address is really suspect.\n\nThe point is, <strong>even though those clues are VERY obvious,\u00a0 the busier you are, the more vulnerable you are.<\/strong> \u00a0 The more layers of security we can add, the more risk we can reduce (but alas, never eliminate)\n\n&nbsp;\n\nThen I received this little beauty \u2026\u00a0 its just the 'admin-alerts' in the email source that stands out - everything else looks legitimate.\n\n<a href=\"http:\/\/kinetics.co.nz\/wp-content\/uploads\/2019\/08\/SneakyPhishing.jpg\"><img class=\"wp-image-3706 alignnone\" src=\"http:\/\/kinetics.co.nz\/wp-content\/uploads\/2019\/08\/SneakyPhishing.jpg\" alt=\"\" width=\"615\" height=\"579\" \/><\/a>\n\n&nbsp;\n\n[wow_spacing size=\"20px\"]\n\nIf you then follow the link, say to look at the quarantine page\u00a0(which, by the way, is spelt incorrectly in the email), it takes you to a page that looks legitimate, where you would enter your login details to access the logs - which almost seems sensible, except again the URL of the page is clearly false.\n\n&nbsp;\n\n<strong>Very sneaky and almost looks legitimate.\u00a0 You have to be so careful.<\/strong>\n\nHowever, using a tool like \"message header analyser\", you can quickly see there is nothing legitimate about it.\n\n<strong>Please be on your guard!<\/strong>\n\n&nbsp;\n\n<a href=\"http:\/\/kinetics.co.nz\/wp-content\/uploads\/2019\/08\/MHA1.png\"><img class=\" wp-image-3710 aligncenter\" src=\"http:\/\/kinetics.co.nz\/wp-content\/uploads\/2019\/08\/MHA1.png\" alt=\"\" width=\"701\" height=\"502\" \/><\/a>\n\n&nbsp;\n\n<a href=\"http:\/\/kinetics.co.nz\/wp-content\/uploads\/2019\/08\/MHA2.png\"><img class=\"wp-image-3711 aligncenter\" src=\"http:\/\/kinetics.co.nz\/wp-content\/uploads\/2019\/08\/MHA2.png\" alt=\"\" width=\"590\" height=\"634\" \/><\/a>","_et_gb_content_width":"","footnotes":""},"categories":[4],"tags":[],"class_list":["post-3652","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-news"],"_links":{"self":[{"href":"https:\/\/new.kinetics.co.nz\/index.php?rest_route=\/wp\/v2\/posts\/3652","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/new.kinetics.co.nz\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/new.kinetics.co.nz\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/new.kinetics.co.nz\/index.php?rest_route=\/wp\/v2\/users\/5"}],"replies":[{"embeddable":true,"href":"https:\/\/new.kinetics.co.nz\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=3652"}],"version-history":[{"count":0,"href":"https:\/\/new.kinetics.co.nz\/index.php?rest_route=\/wp\/v2\/posts\/3652\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/new.kinetics.co.nz\/index.php?rest_route=\/"}],"wp:attachment":[{"href":"https:\/\/new.kinetics.co.nz\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=3652"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/new.kinetics.co.nz\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=3652"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/new.kinetics.co.nz\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=3652"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}