<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Any other (ISC)2 members get this possible phishing attempt? in Threats</title>
    <link>https://community.isc2.org/t5/Threats/Any-other-ISC-2-members-get-this-possible-phishing-attempt/m-p/66366#M1031</link>
    <description>&lt;P&gt;Received the below email today (sanitized). No plaintext equivalent, From header domain isn't (ISC)2, mismatch between From and Reply to domains. Physical address listed at bottom is not (ISC)2.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Also, It's been months since I last had to contact with (ISC)2 customer service. However, the To name and email are something I use specifically for (ISC)2.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Leaving me to conclude one of three possibilities: A) someone has gotten at the (ISC)2 directory and is now phishing us, or B) Just for fun, (ISC)2 is conducting a phishing simulation, or C) It was a legit but flawed attempt.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;FONT color="#000000"&gt;From: "ISC2 Customer Service Team" &amp;lt;invitations@wwxvfzzn.getfeedback-cx.com&amp;gt;&lt;/FONT&gt;&lt;BR /&gt;&lt;FONT color="#000000"&gt;To: "xxxxx" &amp;lt;xxxx@xxxxxxx&amp;gt;&lt;/FONT&gt;&lt;BR /&gt;&lt;FONT color="#000000"&gt;Subject: ISC2 Customer Service Survey&lt;/FONT&gt;&lt;BR /&gt;&lt;FONT color="#000000"&gt;Date: Fri, 19 Jan 2024 12:02:42 +0000&lt;/FONT&gt;&lt;BR /&gt;&lt;FONT color="#000000"&gt;Reply-To: Natasha Karelina &amp;lt;nkarelina@isc2.org&amp;gt;&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;FONT color="#000000"&gt;ISC2 Customer Service Survey&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT color="#000000"&gt;Thank you for contacting ISC2 Customer Service. Please take this short survey to let us know how we did while helping you. Start Survey [link to non-ISC2 domain]&lt;/FONT&gt;&lt;BR /&gt;&lt;FONT color="#000000"&gt;Please respond within 7 days.&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;FONT color="#000000"&gt;One Curiosity Way, San Mateo, CA, 94403&lt;/FONT&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Fri, 19 Jan 2024 15:10:09 GMT</pubDate>
    <dc:creator>JoePete</dc:creator>
    <dc:date>2024-01-19T15:10:09Z</dc:date>
    <item>
      <title>Any other (ISC)2 members get this possible phishing attempt?</title>
      <link>https://community.isc2.org/t5/Threats/Any-other-ISC-2-members-get-this-possible-phishing-attempt/m-p/66366#M1031</link>
      <description>&lt;P&gt;Received the below email today (sanitized). No plaintext equivalent, From header domain isn't (ISC)2, mismatch between From and Reply to domains. Physical address listed at bottom is not (ISC)2.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Also, It's been months since I last had to contact with (ISC)2 customer service. However, the To name and email are something I use specifically for (ISC)2.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Leaving me to conclude one of three possibilities: A) someone has gotten at the (ISC)2 directory and is now phishing us, or B) Just for fun, (ISC)2 is conducting a phishing simulation, or C) It was a legit but flawed attempt.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;FONT color="#000000"&gt;From: "ISC2 Customer Service Team" &amp;lt;invitations@wwxvfzzn.getfeedback-cx.com&amp;gt;&lt;/FONT&gt;&lt;BR /&gt;&lt;FONT color="#000000"&gt;To: "xxxxx" &amp;lt;xxxx@xxxxxxx&amp;gt;&lt;/FONT&gt;&lt;BR /&gt;&lt;FONT color="#000000"&gt;Subject: ISC2 Customer Service Survey&lt;/FONT&gt;&lt;BR /&gt;&lt;FONT color="#000000"&gt;Date: Fri, 19 Jan 2024 12:02:42 +0000&lt;/FONT&gt;&lt;BR /&gt;&lt;FONT color="#000000"&gt;Reply-To: Natasha Karelina &amp;lt;nkarelina@isc2.org&amp;gt;&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;FONT color="#000000"&gt;ISC2 Customer Service Survey&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT color="#000000"&gt;Thank you for contacting ISC2 Customer Service. Please take this short survey to let us know how we did while helping you. Start Survey [link to non-ISC2 domain]&lt;/FONT&gt;&lt;BR /&gt;&lt;FONT color="#000000"&gt;Please respond within 7 days.&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;FONT color="#000000"&gt;One Curiosity Way, San Mateo, CA, 94403&lt;/FONT&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 19 Jan 2024 15:10:09 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Threats/Any-other-ISC-2-members-get-this-possible-phishing-attempt/m-p/66366#M1031</guid>
      <dc:creator>JoePete</dc:creator>
      <dc:date>2024-01-19T15:10:09Z</dc:date>
    </item>
    <item>
      <title>Re: Any other (ISC)2 members get this possible phishing attempt?</title>
      <link>https://community.isc2.org/t5/Threats/Any-other-ISC-2-members-get-this-possible-phishing-attempt/m-p/66381#M1032</link>
      <description>&lt;P&gt;&lt;a href="https://community.isc2.org/t5/user/viewprofilepage/user-id/1005241419"&gt;@JoePete&lt;/a&gt;Nothing seen so far, but I will keep an eye open for it.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Caute_Cautim&lt;/P&gt;</description>
      <pubDate>Sat, 20 Jan 2024 00:36:29 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Threats/Any-other-ISC-2-members-get-this-possible-phishing-attempt/m-p/66381#M1032</guid>
      <dc:creator>Caute_cautim</dc:creator>
      <dc:date>2024-01-20T00:36:29Z</dc:date>
    </item>
  </channel>
</rss>

