Hmm, I'm not sure about F. Wouldn't that just be internal information for the security team? I'd focus on the external indicators that could help identify the phishing source.
Ha! I bet the security team would also want to know the 'state of the phishing email' - you know, like if it was opened, clicked, or forwarded. That's a good one, C!
A, D, and E for sure. I mean, that's the basic info you'd want to capture, right? The URLs, IPs, and file hashes could be clues to the source of the phishing attack.
Art
3 months agoLorrine
3 months agoYolande
2 months agoAmber
2 months agoCarissa
3 months agoLucia
3 months agoDevora
3 months agoJamika
3 months agoBrittney
2 months agoErick
3 months agoWilda
3 months agoLatanya
3 months agoAnastacia
4 months agoSolange
3 months agoLigia
3 months agoLeontine
4 months ago