Phishing is a cyber attack method where criminals impersonate trusted entities (such as banks, delivery services, or even colleagues) to trick recipients into sharing sensitive information. Typically, phishing attempts come via:
- Email phishing: Fake emails, with malicious links or attachments, designed to steal credentials or spread malware.
- Spear phishing: Targeted attacks against specific individuals or companies.
- Business Email Compromise (BEC): Impersonation of executives to trick employees into transferring money.
- Smishing & Vishing: Phishing via SMS or voice calls.
- Clone phishing: A legitimate email is duplicated and altered with malicious links.
The goal? To steal credentials, financial details, or gain access to systems for further attacks. Phishing is effective because it exploits human psychology: urgency, fear, and trust. Even the best spam filters cannot catch every phishing attempt, making employee awareness crucial.