How not to write to your partners

or, “How to look like a phishing attack without even trying.”

I recently received this (redacted) email with the title “ACTION REQUIRED – PASSWORD RESET”.  The email headers bear all the signs of a legitimate email, yet this seems to be virtually identical to the dozens of phishing emails which litter my junk folder on a regular basis.  I actually wonder whether HP have been the victims of an insider attack, given this sort of incompetence.  Has anyone else seen anything like this?

Clip here

Please click here if you cannot view this email



Dear HP partners,

Please note that your HP Partner Portal password will expire within 30 days. To ensure continued access to the portal, click here and follow the steps below for a hassle-free password reset process.

How to Reset Your Password:

Thank you for your continued support and cooperation in making this partnership a success.


System Administrator


We respect your privacy. If you don’t wish to receive any information from HP, you may unsubscribe here. Please click here to see our privacy policy.

© 2012 Hewlett-Packard Asia Pacific Pte Ltd. Registration No.: 198703164G. All rights reserved. All product and company names referenced herein are trademarks of their respective owners. THIS DOCUMENT IS PROVIDED FOR INFORMATIONAL PURPOSES ONLY. INFORMATION PROVIDED IN THIS DOCUMENT IS PROVIDED AS IS WITHOUT WARRANTY OF ANY KIND, EITHER EXPRESSED OR IMPLIED. This document may be copied provided all text is included and copies contain HP’s copyright notice and any other notices provided herein.



Leave a Reply