It's UMD annual security training time again! As many of you know, this stuff is a preoccupation of mine. I'll document a few of the worst howlers here.
The first module is on phishing. The content isn't too bad (mostly) but some of the quiz questions are baffling. Why is it important that I know what cute name the training module has given to the practice of using vv for w or 0 for O to support domain impersonation?
@adamshostack I'm sure that's the intention but the overall effect is quite silly. I just did the "physical security" module and got quizzed on a statistic about how often laptops are stolen in the U.S. (answer is putatively every 53 seconds; citation needed).