My colleague has forwarded me an email and asked "Can you please check for me if it is genuine?"
I'm just a programmer, so I have no idea.
The email is from a website called PDFfiller, which seems to be a document editing and sharing service. The person sending it is called **Account Payable**. I'm meant to click on a link to download a PDF.
I have asked if they are expecting an email and if they could ask if anyone has sent documents this way, and my colleague replied that it could be from a customer.
Is there a way to download and read the PDF without too much exposure?
For example would it be low risk to open it in a virtual machine?
Basically I don't want to open the file and have my machine become a hostage, or to have all my outlook contacts stolen.