Section 5.41 Preventing Phishing Attacks Flashcards
Objectives 2.2 Explain common threat vectors and attack surfaces Objectives 5.6 Given a scenario, implement security awareness practices
Preventing Phishing Attacks
The threat of a successful phishing campaign against your organisation can be mitigated effectively by
- Implementing the right strategies
- Providing user security awareness training
Anti-phishing Campaign
U.S.A
Essential user security awareness training tool that can be used to educate individuals about the risks of phishing and how to best identify potential phishing attempts and techniques
Should offer remedial training for users who fell victim to simulated phishing emails
5 indicators that give away a phishing attack
5 common indicators associated with phishing attacks
- Urgency
- Unusual requests
- Mismatched URLs
- Strange email addresses
- Poor spelling or grammar
Phishing mitigation - how to protect against phising attacks
Mitigation
■ Security Awarness Training
■ Report suspicious messages to I.T / Users
■ Analyse/Triage the event
■ Revise security after successful event