S
7

My own email got spoofed and I almost fell for the scam

Last Tuesday I got an email that looked like it was from my boss asking me to buy $500 in gift cards, and when I checked the header I realized it was actually sent from my own compromised account to myself.
3 comments

Log in to join the discussion

Log In
3 Comments
jamie_white
Whoa, that gave me chills. I had a buddy who got hit with something similar last year. His "boss" email asked him to buy Amazon gift cards for a client gift, and since it looked legit from his actual inbox, he almost did it. The only thing that stopped him was his boss walked by his desk and he joked about the "generous gift budget" and his boss had no clue what he was talking about. Spent the rest of the week changing every password and yelling at his IT department. Your mileage may vary, but that close call scared him straight into using a password manager with two-factor.
3
emery19
emery1927d agoMost Upvoted
Oh man, that is terrifyingly clever. In my experience, the best thing you can do right now is enable two-factor authentication on that email account and change your password to something totally new, just to be safe.
1
blairtaylor
Man, I keep telling myself I'll get around to setting up two-factor authentication but somehow I'm always "too busy" watching cat videos on YouTube. Guess I'll be that guy who learns the hard way, huh?
1