[nsp-sec] Google to the WCP - spreadsheet phish

Daniel Robert Adinolfi dra1 at cornell.edu
Tue Sep 20 13:41:35 EDT 2011


On Sep 20, 2011, at 13:26, Chris Morrow wrote:

> we can, though ... sadly there's a 24hr SLA on clicking the report-abuse
> link :( which on the one hand is nice, on the other still kinda sucks :(

OK.  I'll wait that 24 hours before complaining in the future. :)

But, according to some research I've seen (from the PhishMe people, FWIW), within four hours after a phishing campaign is started, 90% (I think) of those that will respond to it will have done so.  So, if we can't get these knocked down within four hours, it's almost not worth knocking them down at all.

I suppose for that last 10%, it would be worth it.  Better than nothing.

-Dan
AS26


_________________
Daniel Adinolfi, CISSP
Senior Security Engineer, IT Security Office
Cornell University - Office of the CIO
email: dra1 at cornell.edu   phone: 607-255-7657








More information about the nsp-security mailing list