• natural_motions@lemmynsfw.com
    link
    fedilink
    English
    arrow-up
    15
    arrow-down
    1
    ·
    2 months ago

    The highest commandment: don’t give your password. Ever.

    No actual tech representative wants or needs your password, they simply will not ask for it.

    • corvi@lemm.ee
      link
      fedilink
      English
      arrow-up
      9
      ·
      2 months ago

      The problem is that type of phishing is pretty much unheard of these days. You’re so much more likely to run into a fake Microsoft SSO page. I see these every day at work, and if you’re not checking the URL, it’s often identical.

      So, the actual highest commandments are use MFA, read urls, and double check email senders.

      • Rob@lemmy.world
        link
        fedilink
        English
        arrow-up
        1
        ·
        2 months ago

        Use pass keys (where possible); that mitigates the issues you describe