Hello.
In our previous tip, we looked at how cybercriminals use social engineering to influence our decisions.
One of the most commonly used techniques to achieve this is phishing.
Emails that appear to be legitimate but are intended to obtain information or credentials, or to get us to take a specific action.
These messages often use elements that inspire trust or create a sense of urgency.
- A problem with an account.
- An unpaid bill.
- An alleged incident.
- An unexpected request.
All of this with one goal in mind: to get us to click before we think.
And when we act without verifying, the risk increases.
You know, be wary of:
- Unknown senders.
- Suspicious links.
- Unexpected requests.
- Messages that pressure you to act quickly.
Before clicking, always verify the sender and carefully review the message’s content.
Stop, think, and check.
If you have any doubts, do not click on any links or open any attachments.
Because when it comes to phishing, a single click can be all it takes.
Think before you click.
IMPORTANT NOTE:
If, despite complying with all these measures, you encounter situations that do not conform to the level of security required or established in internal policies, do not hesitate to inform your line manager, the Security Manager, security personnel and/or the IT department, depending on the type of suspicion.
If it happens to you on a personal level, report it directly to the police authorities, so that they can give you appropriate advice and conduct an investigation.
