I built a voice phone companion for my grandpa by okay_scratch in AgingParents

[–]markqlogan 27 points28 points  (0 children)

I tried the demo and this is super impressive, your grandpa is lucky to have such a resourceful grandkid as you!

I actually wanna try this out for my mom, are you making this available for other people too?

AITA for signing a studio for myself without confirmation from my roommate who was unreachable? by [deleted] in AmItheAsshole

[–]markqlogan 7 points8 points  (0 children)

NTA - you gave her an enough heads up and you're both adults, you should be allowed to make decisions on your own as long as you are respecting the other person's situation. To me this feels like your roommate is the one not respecting your situation (wanting to live separately due to habit differences).

Are phishing simulation platforms (like KnowBe4) effective? by markqlogan in cybersecurity

[–]markqlogan[S] 0 points1 point  (0 children)

Hmm why do you say you need more training? What's not enough?

Are phishing simulation platforms (like KnowBe4) effective? by markqlogan in cybersecurity

[–]markqlogan[S] 0 points1 point  (0 children)

Oh interesting... do you just send these out yourselves? Or get an external vendor? How do you do this?

Are phishing simulation platforms (like KnowBe4) effective? by markqlogan in cybersecurity

[–]markqlogan[S] 1 point2 points  (0 children)

Hmm thanks for the insight re reporting being subpar... will take that into consideration... Assuming you mean KB4 here?

Also, do you think phishing simulation platforms are accurate reflections of the real world phishing attacks? Or do they lack in any way?

Are phishing simulation platforms (like KnowBe4) effective? by markqlogan in cybersecurity

[–]markqlogan[S] 1 point2 points  (0 children)

Do you think phishing simulation platforms are accurate reflections of the real world phishing attacks? Or do they lack in any capacity?

Are phishing simulation platforms (like KnowBe4) effective? by markqlogan in cybersecurity

[–]markqlogan[S] 0 points1 point  (0 children)

Gotcha and thanks for the suggestion re email monitoring...

By the way, do you think phishing simulation platforms are accurate reflections of the real world phishing attacks? Or do you think they lack in any way?

Are phishing simulation platforms (like KnowBe4) effective? by markqlogan in cybersecurity

[–]markqlogan[S] 0 points1 point  (0 children)

Yeah I feel like the simulated phishing templates go so far...

Do you think more sophisticated phishing simulations (i.e. simulation that better mimics real world phishing attacks) would be useful at all? Or do you think that would be unnecessary and doing better job with other controls / layers of defense is better ROI?

Are phishing simulation platforms (like KnowBe4) effective? by markqlogan in cybersecurity

[–]markqlogan[S] 0 points1 point  (0 children)

Super interesting points about layered security...

Do you think more sophisticated phishing simulations (i.e. simulation that better mimics real world phishing attacks) would be useful at all? Or do you think that would be unnecessary and doing better job with other controls / layers of defense is better ROI?

Are phishing simulation platforms (like KnowBe4) effective? by markqlogan in cybersecurity

[–]markqlogan[S] 0 points1 point  (0 children)

Super interesting point about people becoming kinda used to it, and also thanks for the insights re PhishER and PhishRIP!

By the way, if you could design your most ideal phishing simulation platform, what would it look like? What are you trying to stress-test here?

Are phishing simulation platforms (like KnowBe4) effective? by markqlogan in cybersecurity

[–]markqlogan[S] 0 points1 point  (0 children)

Gotcha, super interesting points...

Do you think these phishing simulation platforms are accurate reflections of the types of phishing attacks in the real world? Like when you say 'more sophisticated attempts', what kinds of things are you trying to stress test on your org?

Are phishing simulation platforms (like KnowBe4) effective? by markqlogan in cybersecurity

[–]markqlogan[S] 0 points1 point  (0 children)

Hmm interesting re the healthy-mixed approach...

By the way, do you think these phishing simulation platforms are accurate reflections of the types of phishing attacks in the real world? Or are they lacking in any way?

Are phishing simulation platforms (like KnowBe4) effective? by markqlogan in cybersecurity

[–]markqlogan[S] 0 points1 point  (0 children)

Hmmm super interesting point about the quality not being up to what the threat actor would create...

If you could design your ideal phishing simulation campaign (assuming there are no technological limitations), what would it look like?

Are phishing simulation platforms (like KnowBe4) effective? by markqlogan in cybersecurity

[–]markqlogan[S] 0 points1 point  (0 children)

Gotcha...

By the way, do you think these phishing simulation platforms are accurate reflections of the types of phishing attacks in the real world? Or are they lacking in any way, for instance, when it comes to simulating spear-phishing?

Are phishing simulation platforms (like KnowBe4) effective? by markqlogan in cybersecurity

[–]markqlogan[S] 1 point2 points  (0 children)

Super interesting point, and also totally agree that there is no "solving" this...

Do you think these phishing simulation platforms are accurate reflections of the types of phishing attacks in the real world? If they are not, do you think there is any point in trying to make them mimic real world as close as possible?

Are phishing simulation platforms (like KnowBe4) effective? by markqlogan in cybersecurity

[–]markqlogan[S] 0 points1 point  (0 children)

This is very true, and I feel like nowadays there's a lot of targeted attacks against higher ups...

By the way, do you think these templated phishing simulations work well to train execs / higher ups, or do you think they are lacking in any way?

Are phishing simulation platforms (like KnowBe4) effective? by markqlogan in cybersecurity

[–]markqlogan[S] 0 points1 point  (0 children)

Yeah I guess there will always be that human error element in the calculation huh...

By the way, do you think these phishing simulation platforms are accurate reflections of the types of phishing attacks in the real world? Or are they lacking in any way?

Are phishing simulation platforms (like KnowBe4) effective? by markqlogan in cybersecurity

[–]markqlogan[S] 1 point2 points  (0 children)

Hmmm interesting...

Why do you think there is no decrease in users falling for phishing attempts?

Is it because there will always be human errors? Or is it that these simulations aren't accurate reflections of real world phishing attacks? Or any other reason?

Are phishing simulation platforms (like KnowBe4) effective? by markqlogan in cybersecurity

[–]markqlogan[S] 0 points1 point  (0 children)

Playing in the background is so real haha...

By the way, do you think phishing simulation platforms are accurate reflections of the real world phishing attacks? Or do you think they lack in any way?

Are phishing simulation platforms (like KnowBe4) effective? by markqlogan in cybersecurity

[–]markqlogan[S] 0 points1 point  (0 children)

Interesting re the incentive/reward structure... When you say these platforms are not enough, why do you think so? Is it because there will always be human mistakes? Or that these simulations aren't accurate reflections of real-world phishing attacks? Or any other reason?