Hmm, I'm not sure about F. Wouldn't that just be internal information for the security team? I'd focus on the external indicators that could help identify the phishing source.
Ha! I bet the security team would also want to know the 'state of the phishing email' - you know, like if it was opened, clicked, or forwarded. That's a good one, C!
A, D, and E for sure. I mean, that's the basic info you'd want to capture, right? The URLs, IPs, and file hashes could be clues to the source of the phishing attack.
Art
5 months agoLorrine
5 months agoYolande
3 months agoAmber
4 months agoCarissa
4 months agoLucia
5 months agoDevora
5 months agoJamika
5 months agoBrittney
4 months agoErick
4 months agoWilda
4 months agoLatanya
5 months agoAnastacia
5 months agoSolange
4 months agoLigia
5 months agoLeontine
5 months ago