Oddbean new post about | logout
 I just got a phishing email from microsoft.com and gmail thinks it's real. lol. I thought these companies knew each other servers... 

Nostr fixes this.  
 Some detail for us how this is fixed here at the tech level but in ELI5 language? 
 Check first reply 
 Beautiful work by the scammer https://image.nostr.build/e4de1de5a30fda15c679ce5cbdb5b33c8e45a1ded487359bafd88066701eaa00.png 
 Is there any tell it's a scam? This looks immaculate!

I guess you know it's fake because you never bought a license. 
 It's either that or somebody gave me 3 licenses :)  
 Just check where the button link leads to. 
 What do the headers look like? 
 I received the same email and, damn, the sender is actually Microsoft. Reality poor security management (as usual) from them. But the SPF record exists, so the scammer exploited something else. 
 I was going to call the phone number to see whats  there, but I don't have a burner cell with me these days..  
 nostr:nevent1qqsp7saf6dsmm8fvj9e2dnnzkwnusn2npr2f9tyj5hmjczy7y97xduspz4mhxue69uhhwmm59ej8gmmwdahzucm0d5hsygrmmmmmugka3evlgcqwq3922wsul966nhrayl04svauwldhsjjcq5psgqqqqqqskykssk 
 Leads to Microsoft. So, I think they want me to call the phone number and get me into their "scam-susceptible phone lists". 
 So double weird.
I tried to search the email that I received, but I cannot find it, trashed. 
 I doubt the sender was @microsoft.com, right?
Or no SPF in place? Crazy.
Btw, I'm also getting a lot of phishing emails branded Microsoft lately. 
 🤣🤣
nostr:nevent1qqsv0zsargklkrqq0su5jzakahr6sna0nqq404xg8wk4qt3f5hugcgcpz9mhxue69uhkummnw3ezuamfdejj7q3qgcxzte5zlkncx26j68ez60fzkvtkm9e0vrwdcvsjakxf9mu9qewqxpqqqqqqz0l58fj