By Scott Aurnou
‘Phishing’ is a method by which an attacker tries to trick you into revealing your personal, financial and/or log in information. Typical phishing attacks are often made via emails, websites, text messages and even automated phone calls (aka ‘robocalls’). These attacks will often look very convincing and contain web links leading to phony websites and/or bogus phone numbers to call. Some of them will also include attachments intended to infect your computer or device with malicious software (aka malware). Once your information has been stolen, it will either by used to impersonate or otherwise take advantage of you or simply sold online. Here are a few tips on how to identify a phishing attack and avoid having your information stolen.
Most phishing attacks aren’t obvious. Early phishing attempts were often clumsy and rife with typos, but more and more of the newer ones arrive as convincingly accurate-looking fake emails purporting to come from a trusted business like a bank, major airline, delivery service, PayPal, a governmental agency or even a work colleague. This is possible because a sender’s actual email address can be altered to appear as though the message is coming from someone else. Likewise, a different phone number can be made to show up on a call recipient’s caller ID. This process is called ‘spoofing.’
Read more ›