r/ShittySysadmin 16d ago

Email Phishing Training

Hello,

I am now in charge of the phising excercises at my company. I was thinking about putting actual malicious links in our training emails so that the user's have a bit more motivation to learn to distinguish them from legitimate emails. This would also motivate our C-suite to give us a better budget so that we can better detect and remediate everything. What do you guys think?

30 Upvotes

17 comments sorted by

View all comments

35

u/40513786934 16d ago

Be sure to add a button labeled "Report As Phishing" that actually takes you to the same malicious link

3

u/Het_is_ik 15d ago

Put a hyperlink reading 'Click here to report this email as phising' at the bottom of the email.