Phishing Discussions - Best Practices

Occasionally we will get what appears to be phishing emails in our discussions. I would like to know what Striven Tech’s recommend as best practices so that we isolate exposure to these yet not send out red flags to email servers.

Currently I just ask Gemini to analyze. Should I:

  1. Just stop replies to thread.
  2. Copy good content and put in ‘description box’ and then DELETE Thread?
  3. Notify customer about possible ‘phishing’ email?
  4. Report to our Gmail as ‘phishing’ email?

The scammers are getting better and better every day.

I stop replies and delete the thread, then notify the sender by phone, or use the email of someone else at the same company to alert them of a stolen account. I don’t report the phishing email to Google because it steps on the email address, which they are likely going to keep using once they recover it a change the password.

1 Like