IcedID malware, in the hijacked email thread, with the insecure Exchange servers

The techniques get more and more elaborate once you've got the nasty, but the way to avoid it remains the same: don't open attachments unless you're 100% sure you can trust them.

But will people ever learn? Probably not.

