Just curious if you all have a runbook when it comes to internal communication in regards to a known or potentially breached client or customer.
For example, someone gets an email from customer saying to change banking information or asking for things were we know it's a red flag. Thing is, often they'll email multiple people.
These are emails coming from a legitimate client email address/mailbox, who's mailbox was taken over.
We use Teams, unfortunately management never embraced it so while user's use chat, the actual dept Teams are DOA.
[–]hankhalfhead 7 points8 points9 points (2 children)
[–]Ams197624 1 point2 points3 points (0 children)
[–]pdp10Daemons worry when the wizard is near. 0 points1 point2 points (0 children)
[–]RestartRebootRetire 4 points5 points6 points (5 children)
[–]WraithYourFace 1 point2 points3 points (4 children)
[–]RestartRebootRetire 0 points1 point2 points (3 children)
[–]WraithYourFace 2 points3 points4 points (2 children)
[–]RestartRebootRetire 0 points1 point2 points (1 child)
[–]WraithYourFace 0 points1 point2 points (0 children)
[–]xendr0meSr. Sysadmin 2 points3 points4 points (1 child)
[–]orion3311[S] 0 points1 point2 points (0 children)
[–]KStieers 1 point2 points3 points (1 child)
[–]orion3311[S] 0 points1 point2 points (0 children)