One last click

In this episode Nelson has a doubt about the email just received, but Linda realizes that...

Phishing

Phishing consists of sending emails, SMS or instant messages containing links or attachments aimed at misleading those who receive them.
They are usually sent in large numbers, to tens of thousands of people, to try to «fish» in the heap, just like a trawl fishing, the most unprepared people in order to deceive them.

Do not reply to e-mails that require verification of your credentials for access to financial services (of banks or other financial institutions).

Clues to recognizing a phishing email

  • The e-mail is not expected by the recipient: no one has announced it will be sent
  • The e-mail has a particular syntax: misspellings, mixed Italian / English, flaky punctuation
  • The e-mail refers to a link which, if the real URL is verified, is not that of the reference institution
  • The e-mail contains strange attachments, with uncommon names
  • The e-mail asks for information that no one should ask for (username and password, login details to a site, credit card numbers.

Vishing

This variant of phishing uses the telephone instead of e-mail. A classic case is a scammer who, posing as a call center operator, gains the victim's trust and then asks her for the credentials to access the bank account.

Smishing

This form of phishing uses SMS and instant messages to convey the scam. For example, the victim receives a message informing about a problem with the bank account and a link to click to solve the problem. The link leads to a bogus site that intercepts the victim's credentials.

Qishing

This technique uses QRCodes, which are increasingly popular. Often the scammer covers the real QR code with a code that hijacks the victim to a bogus link, built to steal login credentials.