Magazine pitch that is really a trap
A phishing email posing as The London Magazine is asking you to engage on an advertising opportunity, while replies are quietly redirected to a different domain.
You may see an email with a blank subject, sent from a display name tied to The London Magazine or Publishing Business. It appears as a plain, text-heavy pitch about advertising partnerships and pushes you to click or respond to a prompt like "Learn why this is important". If it lands in your inbox, it is designed to look like a legitimate media approach and to spark your interest quickly.
What gives it away is where your response would actually go. The visible sender uses email.mayfairtimes.co.uk, but any reply is redirected to pubbiz.com, which means you are not dealing with the organisation presented on screen. The email passed normal authentication checks, so your mail system may not flag it, but that only shows the sending setup was technically authorised. It does not prove the message is genuine or that the brand being referenced is the one really contacting you.
The attacker is after engagement first. If you click, reply, or continue the conversation, you could be drawn into a deeper phishing attempt, pressured to share business details, or steered towards a fraudulent payment or malicious link later in the exchange. Once you respond, you confirm your address is active and worth targeting again.
The domain the message claims to be from. Fresh registrations and known-bad reputations are the strongest technical tells of a spoofed sender.
Where a reply to this message would actually be delivered. When it differs from the visible From address, an unsuspecting reply lands with the attacker instead.
Practical steps you or your IT provider can take to reduce the risk from this kind of threat.
- Check: Treat unsolicited media, advertising, or partnership approaches with caution, especially if the subject line is blank or the branding feels slightly off.
- Check: Hover over reply details and links before engaging, and confirm whether the reply address matches the organisation claiming to contact you.
- Do not: Reply, click through, or share business information just because the email passed normal security checks in your inbox.
- Report: Send suspicious messages to your IT provider or internal security team so they can block the sender and review whether others received it.
- Contact Decision1: If you believe your business has been targeted, contact the Decision1 team immediately.

