Skip to main content

What is Phishing?

Phishing is when an attacker attempts to deceive users into engaging in 'undesirable actions,' such as clicking on a malicious link that can install harmful software or leading them to an untrustworthy website.

Recent Phishing Examples

A recent phishing campaign that we have seen in Northern Ireland involved staff receiving emails from compromised contacts indicating a file has been shared. There were three stages email users should be made aware of. 

Stage 1

Users receive an email from a known contact indicating a file has been shared.

Users receive an email from a known contact indicating a file has been shared

Stage 2

Users are directed to a webpage displaying a PDF icon and link to open.

Users are directed to a webpage displaying a PDF icon and link to open.

Stage 3

Clicking ‘Open’ directs users to a spoofed ‘Sign In’ page which will compromise credentials.

Clicking ‘Open’ directs users to a spoofed ‘Sign In’ page which will compromise credentials.