Unfortunate Learning Lessons from Clicking on a Suspicious Phishing Email



Phishing Link Learning LessonsIsraeli news source YNet released a story about a woman who clicked on a suspicious phishing link, was fired from her job, and was accused of fraud with a criminal indictment.

Below is the example of the email the woman received: 

Screen Shot 2020-11-05 at 10.31.54 AM

From the email address to the body text, the email was already looking suspicious. While anyone could fall for a malicious attack, this woman made the unfortunate mistake of clicking on the link. She was then fired from her company right after the incident and was arrested by The Israel Police and the State Attorney's Office. Fortunately, thanks to a judge the outcome would not be negative, but the situation itself could have easily been avoided. 

When asked how often is it that an employee who clicked on a phishing link was fired and charged, Ido Naor, a cyber expert and CEO of Security Joes, explains: "Very rare. I was very surprised by the arrogance of the company, to blame an employee for a cyber operation. The responsibility falls on the company and the computer people in the company. If they had run two-stage authentication it would not have happened. And the activity of the burglars. "

With that said, it's important to have the following takeaways when you receive a suspicious email

  • Double Check the Sender: It's important to make sure any email you receive is from a reliable source or a someone that you know. 
  • Don't Click on any Unknown Attachments: Be mindful of any attachments that are sent to you, especially if the attachment is from someone you do not know. 
  • Utilize Multi-Factor Authentication (MFA): It's not the only measure you should take and you could still potentially get hacked with MFA. However, implementing MFA and a password management system can make it more difficult for the bad guys to infiltrate your network. 

Frequent phishing security tests could have this situation from occurring. That's why new-school security awareness training can ensure your users are always prepared with the tools needed to report any suspicious activity to your security team. 


Free Phishing Security Test

Would your users fall for convincing phishing attacks? Take the first step now and find out before bad actors do. Plus, see how you stack up against your peers with phishing Industry Benchmarks. The Phish-prone percentage is usually higher than you expect and is great ammo to get budget.

PST ResultsHere's how it works:

  • Immediately start your test for up to 100 users (no need to talk to anyone)
  • Select from 20+ languages and customize the phishing test template based on your environment
  • Choose the landing page your users see after they click
  • Show users which red flags they missed, or a 404 page
  • Get a PDF emailed to you in 24 hours with your Phish-prone % and charts to share with management
  • See how your organization compares to others in your industry

Go Phishing Now!

PS: Don't like to click on redirected buttons? Cut & Paste this link in your browser:

https://www.knowbe4.com/phishing-security-test-offer



Subscribe to Our Blog


Comprehensive Anti-Phishing Guide




Get the latest about social engineering

Subscribe to CyberheistNews