The company should use CASB for OAuth application permission control to help prevent this type of attack in the future. CASB stands for cloud access security broker, which is a software tool that monitors and enforces security policies for cloud applications. CASB can help control which third-party applications can access the company's cloud file storage service and what permissions they have. CASB can also detect and block any unauthorized or malicious applications that try to access the company's data. Verified References: https://www.kaspersky.com/resource-center/threats/how-to-avoid-social-engineering-attacks https://www.eccouncil.org/cybersecurity-exchange/ethical-hacking/understanding-preventing-social-engin https://www.indusface.com/blog/10-ways-businesses-can-prevent-social-engineering-attacks/