Critter Care IT β€” Support Desk
HIGH PRIORITY

🎫 Ticket #4474

Clientβš–οΈ Pemberton & Quill, Attorneys at Law Submitted byMs. Quill (Partner) Assigned toMabel TypeRemote β€” Security Module16 β€” Security Strategies ObjectiveCore 2 Β· 2.4 β€” Social engineering, threats & vulnerabilities
Subject: Suspicious email asking us to "confirm" our document-portal login
One of our paralegals received an urgent email this morning that appears to be from our document-management provider. It says our account "will be suspended in 24 hours" unless we click a link and re-enter our portal username and password to verify the account. The logo looks right, but the sender address is a string of random characters and the link, when hovered, points to a domain I don't recognize. Nobody has clicked it yet. Given the sensitive client files we hold, I want to know exactly how to handle this. β€” A. Quill β€” Ms. Quill

1. What kind of attack is this?

2. Correct way to handle the email

3. Best long-term prevention for the firm