| ▲ | Joker_vD 2 hours ago | ||||||||||||||||
Another entry in "Marketing department starts a promotion campaign for the new product that's indistinguishable from a phishing attack" list. Starting with not using a subdomain on your own, very well-known domain but instead using a completely different one, then not having it shown with the rest of your services on your main web site, et cetera. | |||||||||||||||||
| ▲ | raesene9 2 hours ago | parent | next [-] | ||||||||||||||||
Same Story as it ever was. The first time I encountered what I thought was a phishing attack at the bank I worked at 25 years ago, it turned out to be a marketing campaign, with URLs that put our company name as a user before the domain name (back in the day when creds could go in the URL). | |||||||||||||||||
| |||||||||||||||||
| ▲ | spc476 an hour ago | parent | prev | next [-] | ||||||||||||||||
It's probably easier for the marketing department to get a new domain up and running that it is for a new subdomain within their own company. Battling Business Units and all that. | |||||||||||||||||
| |||||||||||||||||
| ▲ | derektank 2 hours ago | parent | prev | next [-] | ||||||||||||||||
You really would think that at least in theory a company like Cloudflare would make it very easy for internal teams to automatically request new subdomains | |||||||||||||||||
| |||||||||||||||||
| ▲ | make3 2 hours ago | parent | prev [-] | ||||||||||||||||
this is the correct take | |||||||||||||||||