A cyberattack where criminals pretend to be a trusted source to steal information.
What is phishing?
An email asks you to act immediately or your account will be locked.
What is urgent language?
The first thing you should do before clicking a suspicious link.
What is check the sender’s email domain?
An email from IT.Security@synchrony.com asking employees to confirm MFA settings.
What is a legitimate email?
Security practice requiring two forms of verification when logging in.
What is multi-factor authentication a.k.a MFA?
Phishing emails often try to steal this type of information used to access accounts.
What is login credentials or passwords?
The email address says: IT-Support@synchr0ny-secure.com.
What is a misspelled or altered domain?
A safe way to check a link without clicking it.
What is hovering over the link?
An email from a CEO asking you to urgently buy gift cards.
What is a phishing scam?
The best practice for protecting your passwords.
What is never sharing your password?
This type of phishing targets a specific person or employee using personal information.
What is spear phishing?
An email begins with “Dear User” instead of your name.
What is a generic greeting?
The department you should contact if you receive a suspicious email.
What is IT or the security team?
An unexpected invoice email from a vendor you don’t recognize.
What is a phishing attempt?
The action employees should take if something in an email feels suspicious.
What is verify before clicking?
Phishing attacks sent through text messages are called this.
What is smishing?
An email asks you to download an unexpected file or invoice.
What is a suspicious attachment?
The action employees should take after identifying a phishing email.
What is report the email?
A password reset email that you requested from the official company site.
What is legitimate communication?
Why phishing attacks are dangerous to organizations.
What is they can cause data breaches or financial loss?
Phishing attacks conducted through phone calls pretending to be IT or a bank.
What is vishing?
A link looks like a company site but directs to another website.
What is a fake or malicious link?
If you accidentally click a phishing link, you should do this immediately.
What is report it to IT/security immediately?
An email threatening immediate account suspension if you don’t click a link.
What is a phishing tactic?
Who is responsible for cybersecurity in an organization.
Who is everyone/all employees?