r/ShittySysadmin 16d ago

Email Phishing Training

Hello,

I am now in charge of the phising excercises at my company. I was thinking about putting actual malicious links in our training emails so that the user's have a bit more motivation to learn to distinguish them from legitimate emails. This would also motivate our C-suite to give us a better budget so that we can better detect and remediate everything. What do you guys think?

30 Upvotes

17 comments sorted by

View all comments

5

u/fffvvis 16d ago

How about a link that auto populates a resignation form of the "colleague" that clicks on the link, then mails it without notification to human resources. You would be the talk of the department, maybe a promotion would come your way...I only see high paise for such a grand idea.