Had a clash with executive over my phishing test methods
Posted by AH_Josh@reddit | sysadmin | View on Reddit | 679 comments
Just wanted to sanity check my testing. I'm VP of IA and Cybersecurity. I handle the audits, compliance, GRC, SOPs, SLA, all the high-level things alongside of presenting SOC and VM findings. Before this I was a white hat red teamer.
I will randomly run phishing tests, we NEED to do at least one per quarter, but I do more depending on how the training and testing on SANS goes, or if we have an uptick of users (we hire 100s of people at once, every couple months).
For the most part I do the run of the mill phishing testing templates. Things like free gift cards, stuff that should be sent to spam if it wasn't for me whitelisting the domain on our DLP/Email filtering tool.
But sometimes I really ramp up the testing, I clean up the e-mail so there are no typos. I use a lookalike domain to ours, and almost always design it to be "internal". A lot of our employees are in their young 20's and late teens. And my most important metric is keeping my network safe.
Skip to couple weeks ago. I sent out a phishing e-mail. It was designed to be HR reaching out because a family member was seriously injured. Click the link to get the hospital info and contact info. Can't send that in the body because it's PII obviously!! Well, I got pulled aside by the CTO and was essentially told my phishing test crossed the line. I informed the CTO that everything was run past legal and breaks no laws.
I also stood my ground and said that serious threat actors aren't going to hold back. They are going to use emotion, urgency, scarcity to get all the information you can get. If 38% of people clicked the test link, it's more important we train them to think through highly emotional moments and think clearly than it is to "go easy" on them. Again, I don't care about my employees as much as I care about protecting my network. That is my job.
So, I am coming to you guys to ask, did I really cross the line? Or is this phishing test well within morally white areas. I stood my ground but find myself second guessing.
679 Comments
Kanibalector@reddit
NoPossibility4178@reddit
The_Original_Conman@reddit
Bright_Arm8782@reddit
Ur-Best-Friend@reddit
Deweyoxberg@reddit
Skyshaper@reddit
rootofallworlds@reddit
PlayStationPlayer714@reddit
Alert-Lavishness9279@reddit
Fairlife_WholeMilk@reddit
bafben10@reddit
Fairlife_WholeMilk@reddit
bafben10@reddit
kuahara@reddit
SharpDressedBeard@reddit
Fairlife_WholeMilk@reddit
Jaereth@reddit
Fairlife_WholeMilk@reddit
Puzzled-Formal-7957@reddit
Jaereth@reddit
isthisbad_3182@reddit
AH_Josh@reddit (OP)
Ruevein@reddit
ButcheringTV@reddit
Ruevein@reddit
ButcheringTV@reddit
subpardave@reddit
pashky868@reddit
vintagerust@reddit
Asheraddo@reddit
vintagerust@reddit
DSMRick@reddit
renzok@reddit
Ur-Best-Friend@reddit
bylebog@reddit
Absolute_Bob@reddit
Bradddtheimpaler@reddit
daedalusprospect@reddit
anpr_hunter@reddit
FarmboyJustice@reddit
ccsrpsw@reddit
BlueHatBrit@reddit
TFABAnon09@reddit
Turdulator@reddit
jbourne71@reddit
hafhdrn@reddit
Joestac@reddit
doggxyo@reddit
jgerrish@reddit
TFABAnon09@reddit
Bogus1989@reddit
TickleMyBurger@reddit
Reeces_Pieces@reddit
ccsrpsw@reddit
steak_and_icecream@reddit
Eggslaws@reddit
REALSDEALS@reddit
dathar@reddit
commissar0617@reddit
dustojnikhummer@reddit
jdptechnc@reddit
Honolulu-Blues@reddit
guzzijason@reddit
Jaereth@reddit
Furdiburd10@reddit
Icolan@reddit
PurplePickle3@reddit
Puzzled-Formal-7957@reddit
Frothyleet@reddit
derpaderpy2@reddit
Problem_Salty@reddit
FrivolousMe@reddit
Happy_Harry@reddit
Wimzer@reddit
Ctaylor10hockey@reddit
IntelligentComment@reddit
IntelligentComment@reddit
DrStalker@reddit
conspicuousxcapybara@reddit
Problem_Salty@reddit
bageloid@reddit
Problem_Salty@reddit
bageloid@reddit
Problem_Salty@reddit
Frothyleet@reddit
Schnitzel725@reddit
ManyInterests@reddit
kjeserud@reddit
gjpeters@reddit
Jaereth@reddit
Problem_Salty@reddit
derpaderpy2@reddit
wiggie2gone@reddit
ButcheringTV@reddit
iB83gbRo@reddit
ButcheringTV@reddit
PlatJC@reddit
ButcheringTV@reddit
jeo123@reddit
ButcheringTV@reddit
estefanamigohermano@reddit
Bruce_Vilanch@reddit
ButcheringTV@reddit
AggravatingAmount438@reddit
ButcheringTV@reddit
samdu@reddit
matteosisson@reddit
blckshdw@reddit
ButcheringTV@reddit
stromm@reddit
AH_Josh@reddit (OP)
TallBoy_Ryan@reddit
AH_Josh@reddit (OP)
ButcheringTV@reddit
FujosRiseUp@reddit
Weed_Wiz@reddit
ButcheringTV@reddit
ButcheringTV@reddit
BasicallyFake@reddit
Rich-Parfait-6439@reddit
GlobusIsAnnoying@reddit
HEONTHETOILET@reddit
CaucasianHumus@reddit
AH_Josh@reddit (OP)
PCLOAD_LETTER@reddit
Sintek@reddit
sarge21@reddit
Sintek@reddit
sarge21@reddit
Fitz_2112b@reddit
AH_Josh@reddit (OP)
Fitz_2112b@reddit
AlecTheDalek@reddit
subpardave@reddit
subpardave@reddit
almost_s0ber@reddit
nekoliten@reddit
florence_pug@reddit
Tangential_Diversion@reddit
DonaldMerwinElbert@reddit
special_rub69@reddit
DonaldMerwinElbert@reddit
Tessian@reddit
Fairlife_WholeMilk@reddit
anonymousITCoward@reddit
Quinnlos@reddit
n0p_sled@reddit
CaucasianHumus@reddit
ProgrammingAce@reddit
Nickarav@reddit
sadmep@reddit
Sintek@reddit
feelingoodwednesday@reddit
Bradddtheimpaler@reddit
feelingoodwednesday@reddit
Bradddtheimpaler@reddit
Sintek@reddit
AH_Josh@reddit (OP)
malwareguy@reddit
Jaereth@reddit
DisplacerBeastMode@reddit
SpeechMuted@reddit
Jaereth@reddit
ProgrammingAce@reddit
Fairlife_WholeMilk@reddit
Tessian@reddit
Bradddtheimpaler@reddit
CaucasianHumus@reddit
Jaereth@reddit
Jaereth@reddit
ncc74656m@reddit
Tessian@reddit
npaladin2000@reddit
AH_Josh@reddit (OP)
SnooCamera@reddit
Manitcor@reddit
FujosRiseUp@reddit
FujosRiseUp@reddit
DSMRick@reddit
dblgsndhyte@reddit
Any-o-Mouse@reddit
Evening-Page-9737@reddit
Single-Virus4935@reddit
ilyas-inthe-cloud@reddit
star_gazer2112@reddit
CeC-P@reddit
kerosene31@reddit
NextConfidence3384@reddit
Stinkles-v2@reddit
homingconcretedonkey@reddit
MrPotagyl@reddit
homingconcretedonkey@reddit
MrPotagyl@reddit
Current_Anybody8325@reddit
SharpDressedBeard@reddit
opinionsOnPears@reddit
orbing@reddit
LeTrolleur@reddit
Xelopheris@reddit
kozak_@reddit
Advanced_Vehicle_636@reddit
LoveCyberSecs@reddit
hkusp45css@reddit
SevaraB@reddit
Mike_Raven@reddit
Jaereth@reddit
NoPossibility4178@reddit
Jaereth@reddit
anomalous_cowherd@reddit
airmantharp@reddit
anomalous_cowherd@reddit
dustojnikhummer@reddit
the-berik@reddit
Mulielo@reddit
Ninjabeaver212@reddit
Xelopheris@reddit
Jaereth@reddit
zmeelotmeelmid@reddit
Jaereth@reddit
screampuff@reddit
kozak_@reddit
Sharobob@reddit
screampuff@reddit
pds12345@reddit
Sharobob@reddit
bemenaker@reddit
listur65@reddit
ThellraAK@reddit
Freakin_A@reddit
DrMacintosh01@reddit
Too-Uncreative@reddit
DrMacintosh01@reddit
Too-Uncreative@reddit
screampuff@reddit
Sharobob@reddit
DrMacintosh01@reddit
Bradddtheimpaler@reddit
TheRealPitabred@reddit
DrMacintosh01@reddit
TheRealPitabred@reddit
Bradddtheimpaler@reddit
DrMacintosh01@reddit
Croissant70@reddit
ncc74656m@reddit
Vesalii@reddit
Sea-Aardvark-756@reddit
Redacted_Reason@reddit
DaemosDaen@reddit
reenact12321@reddit
Puzzled-Formal-7957@reddit
NickW1343@reddit
sir_mrej@reddit
OneSeaworthiness7768@reddit
habibexpress@reddit
IFarmZombies@reddit
_menth0l@reddit
trentq@reddit
persiusone@reddit
Affectionate_Exit430@reddit
AverageDummy2@reddit
Putrid-Holiday-3671@reddit
homoscotian@reddit
AverageDummy2@reddit
blueskyn01se@reddit
frenswithgeese@reddit
IAmOgdensHammer@reddit
GiggleyDuff@reddit
SirDerpingtonTheSlow@reddit
not-geek-enough@reddit
InfamousStrategy9539@reddit
Reeces_Pieces@reddit
andrew_joy@reddit
FireFitKiwi@reddit
SikhGamer@reddit
cozza1313@reddit
Mr_Sneb@reddit
TFABAnon09@reddit
mrtuna@reddit
eri-@reddit
turbofired@reddit
justmeKMc@reddit
turbofired@reddit
justmeKMc@reddit
Ok_Wasabi8793@reddit
shadhzaman@reddit
goutsport@reddit
AntisocialTomcat@reddit
justmeKMc@reddit
eddielee817@reddit
Short-Legs-Long-Neck@reddit
Deweyoxberg@reddit
SVSDuke@reddit
Medical-Ask7149@reddit
heapsp@reddit
renolar@reddit
cwolf-softball@reddit
Jacksharkben@reddit
Red_Wolf_2@reddit
RagingDaddy@reddit
schwags@reddit
DeathRabbit679@reddit
Key_Mind_8710@reddit
cddotdotslash@reddit
dparks71@reddit
LordValgor@reddit
TheRealPitabred@reddit
knightofargh@reddit
TheRealPitabred@reddit
8923ns671@reddit
SelfImproveAcct@reddit
Impressive_Pea_509@reddit
bitstream_baller@reddit
badaz06@reddit
Likma_sack@reddit
SemiDiSole@reddit
dparks71@reddit
ncc74656m@reddit
anonymousITCoward@reddit
Easik@reddit
ManyInterests@reddit
blofly@reddit
Caprese_Salad@reddit
Bogus1989@reddit
Practical-Alarm1763@reddit
Lerxst-2112@reddit
Lustrouse@reddit
Snarky_Survivor@reddit
BidAccomplished4641@reddit
BemusedBengal@reddit
largos7289@reddit
Hopefound@reddit
Klutzy-Football-205@reddit
AH_Josh@reddit (OP)
florence_pug@reddit
AH_Josh@reddit (OP)
Skyhound555@reddit
florence_pug@reddit
Skyhound555@reddit
gpcyan3@reddit
Greerio@reddit
lotekjunky@reddit
DarraignTheSane@reddit
Hackwork89@reddit
AH_Josh@reddit (OP)
Hackwork89@reddit
jeffrey_f@reddit
orion3999@reddit
h0tel-rome0@reddit
OldSpice-69@reddit
MiniOozy5231@reddit
bottleofmtdew@reddit
AH_Josh@reddit (OP)
bottleofmtdew@reddit
robocop_py@reddit
throwaway117-@reddit
Rentun@reddit
throwaway117-@reddit
bottleofmtdew@reddit
Rentun@reddit
AH_Josh@reddit (OP)
bottleofmtdew@reddit
WilfredGrundlesnatch@reddit
flyguydip@reddit
urbanhawk1@reddit
Jaereth@reddit
bottleofmtdew@reddit
Puzzled-Formal-7957@reddit
qrysdonnell@reddit
Jaereth@reddit
Silly_Blood_2754@reddit
looney417@reddit
Defconx19@reddit
Randalldeflagg@reddit
BobRyanHere@reddit
jdiscount@reddit
LaughableIKR@reddit
Mizerka@reddit
was_fired@reddit
thortgot@reddit
Absolute_Bob@reddit
everettmarm@reddit
TheAgreeableCow@reddit
DullNefariousness372@reddit
hidazfx@reddit
NoDowt_Jay@reddit
azeottaff@reddit
ferrarif50hunt@reddit
InfraScaler@reddit
smirkingcamel@reddit
flecom@reddit
hellobeforecrypto@reddit
22OpDmtBRdOiM@reddit
dreniarb@reddit
flecom@reddit
PappaFrost@reddit
hellobeforecrypto@reddit
fire-wannabe@reddit
SpeechMuted@reddit
flecom@reddit
accidentalciso@reddit
RandomGen-Xer@reddit
Brua_G@reddit
Problem_Salty@reddit
Brua_G@reddit
phoenix823@reddit
GrizellaArbitersInc@reddit
Stygian_rain@reddit
Best-Economics7594@reddit
vnoice@reddit
NextSouceIT@reddit
blueskyn01se@reddit
F0rkbombz@reddit
Best-Economics7594@reddit
angrydeuce@reddit
matthew7s26@reddit
angrydeuce@reddit
injury@reddit
Jaereth@reddit
flyguydip@reddit
Tessian@reddit
ReptilianLaserbeam@reddit
Int-Merc805@reddit
Nexzus_@reddit
statikuz@reddit
PumpkinNo4869@reddit
Expensive_Plant_9530@reddit
AGsec@reddit
Puzzled-Formal-7957@reddit
banjo_boy45@reddit
demonintheteahouse@reddit
fonetik@reddit
xs0apy@reddit
thedudesews@reddit
Hangikjot@reddit
Admirable_Strike_406@reddit
hitosama@reddit
Indecisive-one@reddit
Ihavefourknees@reddit
Tessian@reddit
traumalt@reddit
ibreatheintoem@reddit
sadmep@reddit
Tessian@reddit
EnhancedEddie@reddit
thargoallmysecrets@reddit
Best-Economics7594@reddit
Usual_Ice636@reddit
kicsi2l8@reddit
DJMagicHandz@reddit
Draft_Punk@reddit
dataBlockerCable@reddit
repooc21@reddit
Honolulu-Blues@reddit
repooc21@reddit
Honolulu-Blues@reddit
repooc21@reddit
Honolulu-Blues@reddit
SemiDiSole@reddit
FauxReal@reddit
SemiDiSole@reddit
FauxReal@reddit
repooc21@reddit
Honolulu-Blues@reddit
SemiDiSole@reddit
Honolulu-Blues@reddit
SemiDiSole@reddit
gamebrigada@reddit
JacksGallbladder@reddit
800oz_gorilla@reddit
vnoice@reddit
800oz_gorilla@reddit
The_Wkwied@reddit
VeryRareHuman@reddit
Normal_Choice9322@reddit
realmozzarella22@reddit
deathtron@reddit
DrMacintosh01@reddit
TraditionalHousing65@reddit
DrMacintosh01@reddit
TraditionalHousing65@reddit
Free_Break8482@reddit
sabre31@reddit
VA6DAH@reddit
itsmrmarlboroman2u@reddit
Aware-Owl4346@reddit
Quagmoto@reddit
NightMgr@reddit
tagged2high@reddit
arkiverge@reddit
Magusds@reddit
KiefKommando@reddit
Intrexa@reddit
hardeningbrief@reddit
Prize-Star-9671@reddit
iamabdullah@reddit
conspicuousxcapybara@reddit
Unusual_Bake_1482@reddit
ReptilianLaserbeam@reddit
AH_Josh@reddit (OP)
subpardave@reddit
TrainAss@reddit
FauxReal@reddit
elatllat@reddit
AH_Josh@reddit (OP)
subpardave@reddit
AH_Josh@reddit (OP)
rynoxmj@reddit
notainotbot@reddit
jadedarchitect@reddit
Lucky-old-boy@reddit
ThisGuy_IsAwesome@reddit
Swimming_Office_1803@reddit
Secret_Account07@reddit
DrMacintosh01@reddit
rootofallworlds@reddit
DrMacintosh01@reddit
sadmep@reddit
statikuz@reddit
AH_Josh@reddit (OP)
DrMacintosh01@reddit
EnhancedEddie@reddit
DrMacintosh01@reddit
EnhancedEddie@reddit
anonymousITCoward@reddit
ihaxr@reddit
____NEBULA@reddit
OneSeaworthiness7768@reddit
TechMonkey13@reddit
F0rkbombz@reddit
sarge21@reddit
Kilobyte22@reddit
KeyComprehensive5917@reddit
publicdomainadmin@reddit
jort_catalog@reddit
Zer0C00L321@reddit
tarkinlarson@reddit
redfiresvt03@reddit
Tuuulllyyy@reddit
bang_switch40@reddit
randommonster@reddit
PDQ_Brockstar@reddit
knxdude1@reddit
fdeyso@reddit
sadmep@reddit
fdeyso@reddit
sadmep@reddit
fdeyso@reddit
knxdude1@reddit
MisterIT@reddit
mander1555@reddit
Vesalii@reddit
-King-K-Rool-@reddit
The_Blue_One@reddit
sadmep@reddit
poorleno111@reddit
HugeButterfly@reddit
Pyrostasis@reddit
Forsaken_Squirrel_31@reddit
TallBoy_Ryan@reddit
nacho_night@reddit
Major-Error-1611@reddit
subpardave@reddit
After-Vacation-2146@reddit
sibble@reddit
Defiant-Chip6513@reddit
rootofallworlds@reddit
Candid_Department924@reddit
npaladin2000@reddit
FaceEmbarrassed1844@reddit
MagillaGorillasHat@reddit
caltrop_cereal@reddit
PM-ME-BATMAN@reddit
kitsinni@reddit
SelfImproveAcct@reddit
robbersdog49@reddit
Classified_117@reddit
robocop_py@reddit
Classified_117@reddit
silentstorm2008@reddit
colmwhelan@reddit
iotic@reddit
ranhalt@reddit
hoodie1776@reddit
kniffs@reddit
haroldthehampster@reddit
RadioStaticRae@reddit
SourcePrevious3095@reddit
Conscious-Arm-6298@reddit
Mental_Beginning_698@reddit
Patient-Stuff-2155@reddit
cultvignette@reddit
SinTheRellah@reddit
DrMacintosh01@reddit
PhillAholic@reddit
AH_Josh@reddit (OP)
EnhancedEddie@reddit
Honolulu-Blues@reddit
DrMacintosh01@reddit
dotbat@reddit
beagle_bathouse@reddit
theoreoman@reddit
SnooSprouts7609@reddit
MorninggDew@reddit
Matazat@reddit
MedicatedDeveloper@reddit
AH_Josh@reddit (OP)
spectralTopology@reddit
waxwayne@reddit
SemiDiSole@reddit
agrk@reddit
AH_Josh@reddit (OP)
bvandepol@reddit
YSFKJDGS@reddit
AH_Josh@reddit (OP)
Ninjabeaver212@reddit
AH_Josh@reddit (OP)
flyguydip@reddit
Ninjabeaver212@reddit
Ninjabeaver212@reddit
YOLO4JESUS420SWAG@reddit
ncc74656m@reddit
RabidTaquito@reddit
AH_Josh@reddit (OP)
sp1cynuggs@reddit
nazerall@reddit
jews4beer@reddit
sadmep@reddit
Beneficial-Trouble18@reddit
gabacus_39@reddit
alter3d@reddit
robocop_py@reddit
genericuser292@reddit
midnitepremiere@reddit
littleko@reddit
b4k4ni@reddit
themastermatt@reddit
Nexzus_@reddit
discgman@reddit
bobsbitchtitz@reddit
Zeitcon@reddit
null_frame@reddit
joeykins82@reddit
Best-Economics7594@reddit
ProgrammingAce@reddit
DrMacintosh01@reddit
ReFractured_Bones@reddit
OG_Dadditor@reddit
npsage@reddit
floatingby493@reddit
Zahrad70@reddit
fartiestpoopfart@reddit
Honolulu-Blues@reddit
masterxc@reddit
ABlankwindow@reddit
PhillAholic@reddit
Lobster_Bodyslam@reddit
Rorasaurus_Prime@reddit
Next_Confection_3046@reddit
ultimateVman@reddit
Sith_Luxuria@reddit
SeekingApprentice@reddit
florence_pug@reddit
Sad-Branch-6927@reddit
siciidkfidneb@reddit
Lost-Droids@reddit
West_Acanthaceae5032@reddit
aldotheapache1032@reddit
the_doughboy@reddit
danfirst@reddit
IcyChemical3661@reddit
deefop@reddit
reegz@reddit
MaToP4er@reddit
Master-IT-All@reddit
sadmep@reddit
StaticR0ute@reddit
NormanJohn1@reddit
snebsnek@reddit