4/10/2024

Discover Bank: An Email from Discover, Or Is It?

I recently received an email from Discover Bank (probably) about adding a layer of security to my account -- and about some other basic ways to keep my account secure.


Email from Discover Bank (probably)


The email itself is informative enough. The subject line reads, "Marc, do you know how to keep your account safe?" The subhead reads, "Learn how to spot bad actors before they spot you." And the body of the email includes all the typically scary Be-Careful-And-Don't-Trust-Anyone-Else language.

But...

The footer includes a reminder to "Add DiscoverBank@bank.em.discover.com to your address book to ensure delivery of these emails." 

The email was not sent from that email address or even from the discover.com domain. The sender is dfscorpor-Unbranded2 <dfscorpor@dfscorpor-2.rsys5.com>. Now, maybe that is a legitimate email address managed by Discover, but it seems like one of those scammer email addresses your father warned you about -- and that undermines their intended message of trust.

So, maybe if you're trying to create trust with your customers, you don't start by making them paranoid.

Lesson:
Consider what you are using as your send email address, especially when sending emails about account security.

No comments: