← Back to context

Comment by kemotep

4 years ago

Same way an employer trains employees on phishing campaigns or an auditor or penetration tester tests resilience or compliance.

Yes, employers often send out fake phishing e-mails to test resilience and organizational penetration testing is done on the field with unsuspecting people.

  • Ah. I never replied to the e-mails sent out by my employer about registering for a training in phishing detection. I just assumed those e-mails were phishing e-mails.

    • I assume that so many official emails from my employer are phishing.. it's a mess.