• Mikina@programming.dev
    link
    fedilink
    English
    arrow-up
    3
    ·
    6 hours ago

    One of the things that surprised me the most when I started working on vishings for a Cybersecurity Red Team was how extremely easy it is to spoof any phone number.

    It’s the nunber one tip I give to anyone who asks about security, a lot of people don’t know that, and spear-vishings are extremely effective.

    People have learned to mostly not trust Microsoft Support numbers asking for your CC, but when an internal company number that your phone matches to your bosses boss calls you, a lot of people fall for that.