When Email Restrictions Go Wrong: A Tale of Malicious Compliance and Management Misfires
Every Monday, the senior management team of a certain organization gathered for a marathon meeting, usually lasting about four hours. If that sounds exhausting, imagine being the person in charge of technology and security, listening to executives debate the merits of email etiquette and group permissions. That’s exactly where Reddit user u/BrainWaveCC found himself one fateful morning, and it set the stage for a masterclass in malicious compliance that left the entire company reeling.
It all started with a single complaint: someone had sent an unwanted email to the “All Employees” distribution group. The solution seemed simple enough, but as with all things in corporate IT, nothing is ever that easy.