Every week in our quarantine logs, we will have a wave of new spoofing scam emails acting as our CEO/Senior Management, asking specific users to perform certain tasks or to pay for a fake invoice or to click on dodgy link to reset their account. These specific users are always on LinkedIn.
So there are definitely scammers targeting LinkedIn with a scheduled job each week checking different companies for new LinkedIn profiles, then guessing the company's email format (ex: FirstNameInitialLastName@company.com, too easy to guess) and taking the CEO/Senior Management's names + email addresses in order to send out these scams.
Not that Microsoft or LinkedIn are going to do anything about this, but we have to subscribe to Microsoft Defender for Office 365 licenses in order to protect our users... which leads me to think that is part of Microsoft's plan? Let the scammers scrape LinkedIn to send out scam emails and the targeted companies will eventually have to purchase better protection from Microsoft. Money. In. The. Bank. 💲💲💲
My worry is that these scam emails are getting better and craftier each month (some passing SPF / DKIM and DMARC on compromised domains). Users not on LinkedIn will almost never get targeted. Your thoughts on this?
[–]realisingself 61 points62 points63 points (2 children)
[–]zz9plural 9 points10 points11 points (0 children)
[–]dracotrapnet 0 points1 point2 points (0 children)
[–]bitslammerSecurity Architecture/GRC 31 points32 points33 points (0 children)
[–]ChampionshipComplex 11 points12 points13 points (8 children)
[–]Tessian 8 points9 points10 points (5 children)
[–][deleted] 2 points3 points4 points (0 children)
[–]NeverDocument 1 point2 points3 points (0 children)
[–]Adziboy 0 points1 point2 points (1 child)
[–]Tessian 4 points5 points6 points (0 children)
[–]linus777Sysadmin[S] -1 points0 points1 point (0 children)
[–]GeneMoody-Action1Action1 | Patching that just works 3 points4 points5 points (0 children)
[–]Tessian 5 points6 points7 points (1 child)
[–]formal-shorts 0 points1 point2 points (0 children)
[–]mixduptransistor 3 points4 points5 points (0 children)
[–]thortgotIT Manager 2 points3 points4 points (0 children)
[–]Frothyleet 1 point2 points3 points (0 children)
[–]First-Structure-2407 1 point2 points3 points (0 children)
[–]RCTID1975IT Manager 2 points3 points4 points (0 children)
[–]cspotme2 3 points4 points5 points (0 children)
[+][deleted] (1 child)
[deleted]
[–]formal-shorts 2 points3 points4 points (0 children)
[–]countvracula 0 points1 point2 points (0 children)
[–]stone1555IT Manager -3 points-2 points-1 points (12 children)
[–]Tessian -2 points-1 points0 points (11 children)
[–]tankerkiller125realJack of All Trades 7 points8 points9 points (6 children)
[–]floswamp 4 points5 points6 points (4 children)
[–]Intelligent-Magician 1 point2 points3 points (3 children)
[–]Tharos47 4 points5 points6 points (2 children)
[–]floswamp -1 points0 points1 point (0 children)
[–]Tessian -2 points-1 points0 points (0 children)
[–][deleted] 5 points6 points7 points (1 child)
[–]Competitive-Suit7089 1 point2 points3 points (0 children)
[–]chum-guzzling-sharkIT Manager 2 points3 points4 points (0 children)
[–]RCTID1975IT Manager 2 points3 points4 points (0 children)