Eskenzi PR ad banner Eskenzi PR ad banner
  • About Us
Wednesday, 3 June, 2026
IT Security Guru
Eskenzi PR banner
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us
No Result
View All Result
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us
No Result
View All Result
IT Security Guru
No Result
View All Result

Taking the Bait: Can You Resist an Email Phishing Attack?

by The Gurus
September 15, 2017
in This Week's Gurus
phishing
Share on FacebookShare on Twitter

Email is a major weapon for cybercriminals and anyone wishing to penetrate an organisations cyber defences. Even nations are at risk. Recently a prankster using the moniker “Sinon Reborn” managed to get the UK Home Secretary, Amber Rudd, to respond to an email she believed to be from a new colleague. From a cybersecurity point of view this is deeply worrying.
The same prankster has also tricked other government officials – in both the UK and the United States – into corresponding with him. While these email exchanges were pranks, they could have been more dangerous. If a prankster can do it so could terrorists, cybercriminals, other nations and hacktivists; all of which are willing to cause huge damage to a nation like the UK.
For the prankster, all he needed was the publicly available emails of the government officials and a free email service to set up his fake accounts. To gain access to sensitive information, it does not always take a genius coder. Targeted phishing attacks can be highly effective if the cybercriminal is willing to do research on the victim. Organisations – and governments – need to be alert to the dangers.
Rolling out the Trojan Horse emails
In the case of Amber Rudd, she responded to an email in which Reborn pretended to be Theresa May’s new communications chief, Robbie Gibb. Reborn sent an email to Rudd’s publicly available email, posing as Robbie, saying that he was happy to be onboard. Rudd then responded via her personal email.
The Home Office was quoted saying, “As the email exchange shows, she rapidly established that it was a hoax and had only exchanged pleasantries up to that point.” While it is true that Rudd did not disclose any critical information in the short email conversation with Reborn, she did unintentionally give her personal email address to the hacker. This must be considered a serious breach of good IT security protocol.
Unfortunately, Rudd is not the only government official to be the victim of this same attacker. Tom Bossert, White House Homeland Security Adviser, was also baited by Reborn’s email phishing. In this instance, Reborn created an Outlook account pretending to be Jared Kushner, and sent a message to Bossert’s official email address. The imposter Kushner invited Bossert to a fictitious VIP soirée. Bossert accepted the invitation and offered his personal email address to the fake Kushner telling him, “if you ever need it.” In a pinch Reborn had sufficiently gained Bossert’s trust.
Looking at Reborn’s story so far it might seem like email phishing is a strategy that suits him because he has no major goals. Reborn might say otherwise. Recently, Reborn set out to trick the editors of Breitbart News and expose their raw email correspondence to the press.
This time he posed as Steve Bannon, a Trump adviser who was recently fired from the White House. Even though he misspelled Bannon’s name in the fake email address, Reborn managed to mislead his targets at Breitbart.
Protecting the organisation when email is a weapon
As these examples show, it is often the employees of an organisation who put a chink in the cyber defence armour and expose confidential information. A careless click or a hastily typed email in the middle of a busy day could result in a security breach.
If a cybercriminal can convince just one person to open a malicious attachment then every layer of security technology has failed. That is why training employees to recognise suspicious messages is essential. And the more employees are educated, the more attackers up their game and employ new strategies. So, what can be done to combat this swiftly shapeshifting threat?
Regular training for employees on how to spot email phishing remains a necessity. People – as the Amber Rudd episode shows – remain a major weakness in an organisation’s, or even a state’s, defences. The greater the awareness within the organisation, the fewer the cracks in its defences. However, technology can also supplement this approach. Application control solutions deploy and maintain a whitelist. These solutions ensure that only approved binaries can run on the systems within an enterprise.
What then if an attacker should still succeed in bypassing this technology and hoodwinking employees? Live response solutions can be installed on employee devices. These solutions can provide quick clean up to remove any malicious files that the employee unknowingly downloaded.
Email is a potential gateway into an organisation and a weakness that can be exploited by cyber attackers with a wide range of motivations from the less serious prankster and notoriety motivations of Sinon Reborn to the much more sinister motivations of jihadis and unfriendly nation states. Phishing in particular is a popular form of attack that still remains too successful for comfort and the fact high-profile politicians are snared by these attacks means all organisations are vulnerable to some extent; therefore, combining technology and people processes to resist the attacks is essential.
By Rick McElroy, Security Strategist, Carbon Black

Tags: CybersecurityTechnology
ShareTweet
Previous Post

Cyber intelligence sharing overlooked by UK organisations

Next Post

Researchers discover Fitbit devices can be hacked

Recent News

Nagomi Control Brings CTEM Into Action

IT Security Guru picks for Infosecurity Europe 2026

June 1, 2026
Nine in Ten Security Leaders Concerned About AI-Generated Code Risks as Salt Security Launches New Governance Tool

Nine in Ten Security Leaders Concerned About AI-Generated Code Risks as Salt Security Launches New Governance Tool

June 1, 2026
Acumen Cyber and AttackIQ Partner to Strengthen Cyber Defense Validation

Acumen Cyber and AttackIQ Partner to Strengthen Cyber Defense Validation

May 29, 2026
Check Point Launches AI Agents That Think Like Attackers as Autonomous Exploitation Reaches Critical Threat Level

Check Point Launches AI Agents That Think Like Attackers as Autonomous Exploitation Reaches Critical Threat Level

May 28, 2026

The IT Security Guru offers a daily news digest of all the best breaking IT security news stories first thing in the morning! Rather than you having to trawl through all the news feeds to find out what’s cooking, you can quickly get everything you need from this site!

Our Address: 10 London Mews, London, W2 1HY

Follow Us

© 2015 - 2024 IT Security Guru - Website Managed by Dessol

  • About Us
Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}
No Result
View All Result
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us

© 2015 - 2024 IT Security Guru - Website Managed by Dessol