Wednesday, December 17, 2025

What is Phishing?

 begin quotes:
Identifying Common Characteristics of Phishing Emails
Phishing is a cyberattack using fake emails, texts, or websites to trick people into giving up sensitive info (passwords, bank details) or installing malware, masquerading as trusted entities like banks or companies. Types include general phishing (mass emails), smishing (SMS texts), and spear phishing (targeted attacks). It's dangerous because it leads to identity theft, financial loss, and network breaches, requiring vigilance to spot red flags like urgent requests or suspicious links. 
How it Works (Function)
  • Deception: Attackers send messages (email, SMS, calls) that look like they're from a legitimate source (e.g., Netflix, your bank).
  • Urgency/Fear: Messages often create a false sense of urgency or threat (e.g., "Your account is locked!") to make you act quickly.
  • Malicious Links/Attachments: You're prompted to click a link to a fake website (mimicking the real one) or open an attachment.
  • Data Theft/Malware: On the fake site, you enter credentials, or the link/attachment installs malware (ransomware, viruses). 

Types of Phishing
  • Email Phishing: Most common; uses deceptive emails.
  • Smishing: Phishing via SMS text messages.
  • Vishing: Phishing over voice calls (phone).
  • Spear Phishing: Highly targeted attacks using personal info to seem more credible.
  • Whaling: Spear phishing aimed at high-profile executives. 

Dangers (Disadvantages)
  • Financial Loss: Stolen bank details or credit card numbers.
  • Identity Theft: Compromised personal data for fraudulent use.
  • Data Breaches: Access to corporate networks, leading to large-scale theft.
  • Malware Infection: Ransomware locking systems or viruses spreading. 

Protection Tips (How to Spot/Prevent)
  • Be Skeptical: Question urgent requests for data or money.
  • Check Sender: Look closely at email addresses and phone numbers.
  • Hover Links: Hover over links (without clicking) to see the actual URL.
  • Go Direct: Navigate to official websites by typing the URL yourself.
  • Use Security Tools: Enable multi-factor authentication (MFA) and use antivirus software. 

  • Phishing: Spot and report scam emails, texts, websites and calls
    What is phishing? 'Phishing' is when criminals use scam emails, text messages or phone calls to trick their victims. The aim is of...
    National Cyber Security Centre
Show all
Dive deeper in AI Mode

  • Phishing - Wikipedia
    Phishing is a form of social engineering and a scam where attackers deceive people into revealing sensitive information or install...
    Wikipedia
  • What Is Phishing? Examples and Phishing Quiz - Cisco
    Phishing is the practice of sending fraudulent communications that appear to come from a legitimate and reputable source, usually ...
    Cisco Systems
  • No comments:

    Post a Comment