Reply to post: Re: We do these "tests" on staff...

If you have to simulate a phishing attack on your org, at least try to get something useful from it

John Brown (no body) Silver badge

Re: We do these "tests" on staff...

"...and we use convincing imitations of banking, fast food, coupon, on-line email, HM Tax office, and auction site alerts. And of course Social Networking sites - both the usual "big" sites, personal and professional."

Not forgetting that most of those categories should not be used by employees with their work email addresses anyway so anyone responding to some of those should be being educated on how to separate personal and work stuff.

