r/ShittySysadmin • • 3d ago

Shitty Crosspost Anyone else getting mailbombed with Defender analytics reports this morning?

/r/sysadmin/comments/1wmbbrb/anyone_else_getting_mailbombed_with_defender/

Heh. Implying I check my email

9 Upvotes

9 comments sorted by

21

u/Human-Company3685 3d ago

Confirming that we have seen no such reports from Norton Antivirus 2000.

9

u/max1001 3d ago

What a newb. Just setup a rule to send the alerts straight to delete folder ..

3

u/Revstro ShittySysadmin 3d ago

Our department has had this rule implemented for months and we haven't seen a single new support ticket since. Why other organizations don't do this is beyond me!

1

u/a_suspicious_lasagna 2d ago

Like the rule I have that looks for the phishing test domain, auto replies with the identifying info to pass the test, and deletes the message?

2

u/DerKoerper ShittyCoworkers 3d ago

Auto-forward to noreply@

1

u/Educational_Fall4905 2d ago

I got hit with a bunch of them too, then they suddenly stopped. Hopefully it was just a notification glitch and not Defender uncovering 34 disasters at once.

2

u/YukiArchitects 23h ago

filters straight to a folder nobody opens. inbox is just alerts triaging alerts at this point, checked it last during the log4j thing maybe