"Wait a minute..."
~ Users at Spear Shield.
As a business whose sole focus is cybersecurity - all of our users back their abilities to spot phishing attempts with their eyes closed! (not literally... but you get the point we're trying to make.) but this one left all of us double guessing and scratching our heads..!
The team at Spear Shield attend many networking events throughout the year. It is not uncommon for us to make a connection with another business and depending on the different services provided, make recommendations to the customers we work with "oh yeah, we know a person for that" and it works vice-versa - "cybersecurity you say? have you met...... the Spears!"
So when the team all received an email yesterday from a known contact, at first glance, it was just your usual email. But let's take a closer look...
The big red banner!
We use Egress Defend as an Integrated Cloud Email Security (ICES) tool internally that provides our users with real-time teachable moments - as demonstrated with the dynamic HTML banners in the email below.
But this must be a false positive right? We usually communicate with X.
Here's what went down:
[screenshot of email]
[screenshot of attachment]
[screenshot of Egress Defend learning page below]
[screenshot of OneNote landing page below]
Fun Fact: A quick look up found that the domain was only registered on Monday! (the day before the phish was sent + received)
[screenshot of credential harvesting page]
It's saved our bacon in this example and made our users think twice.
Static CAUTION: This email originated from outside of the organization. This message might not be safe, use caution in opening it. If in doubt, do not open the attachment nor links in the message. email banners are no longer effective.
User's click next, next, next, next, complete on dried up, generic online training content.
Cyber criminals are forever changing their approaches and it's time we do too.
Spear Shield are currently running a FREE Email security assessment that can help you identify:
If you'd like to learn more, you can visit https://www.spearshield.co.uk/human-activated-risk or contact the team today:
01473 948980
About Spear Shield
Here at Spear Shield, we are continuing to invest in our goal to create one of the most cyber-secure client communities in Suffolk, East Anglia and across the UK.
Our approach is to work closely with IT teams and business leaders to help identify cyber risk, understand core business drivers and challenge the conventional approaches to legacy cybersecurity strategies to enable our customers to exceed their cybersecurity goals.
Spear Shield has a portfolio of award-winning cybersecurity solutions and services that we align to enable our customers to be able to solve even the most complex and advanced cybersecurity challenges.
The team at Spear Shield specialises in:
- Mitigating the risk of social engineering attacks and human-activated cyber risk
- Real-time asset discovery, device security and compliance
- 24/7 Managed Threat Hunting and proactive Incident Response
If you would like to learn why organisations are choosing to secure with Spear Shield, please do contact a member of the team to arrange a confidential conversation today.
The team has several year's experience working within both the private and public sector, have a very consultative approach and would welcome the opportunity to learn more about your organisation.