logo

Don’t use corporate email for your personal life

ID: 4c22c3bb-6238-5f4d-9229-98e118f8f598

STIX ID: report--4c22c3bb-6238-5f4d-9229-98e118f8f598

Feed Name: Pen Test Partners Blog

Date Published: 2025-04-09

Date Updated: 2026-03-26

Author: Lee Parkes

...
...

This guidance explains why using corporate email addresses for non-work services increases organizational risk by enabling credential reuse attacks (credential stuffing/spraying, brute force), social engineering and phishing, account lockout DoS, and reputational exposure via OSINT, and recommends countermeasures. It advises enforcing Acceptable Use Policies, filtering inbound mail from certain domains to discourage non-business use, and mandating MFA (TOTP/FIDO) with conditional access on externally accessible systems to reduce account compromise risk.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.