// THREAT DETECTION AND DATA PRIVACY TERM

Phishing

Phishing is a type of cyberattack where scammers try to trick you into revealing sensitive information, like passwords or credit card numbers, by pretending to be a trustworthy entity in an electronic communication, typically an email.

Phishing — illustration from Wikipedia
Image via Wikipedia

TECHNICAL DEFINITION

Phishing is a social engineering cyberattack vector where malicious actors impersonate legitimate entities via fraudulent electronic communications, primarily email, to deceive victims into divulging sensitive data such as credentials, financial information, or installing malware.

BACKGROUND

Computer security is a subdiscipline within the field of information security. It focuses on protecting computer software, systems, and networks from threats that can lead to unauthorized information disclosure, theft, or damage to hardware, software, or data, as well as to the disruption or misdirection of the services they provide.

READ MORE ON WIKIPEDIA

SYNONYMS & ALIASES

  • Email spoofing
  • Credential harvesting
  • Spear phishing
  • Whaling
  • Smishing
  • Vishing

USAGE NOTE

Phishing remains one of the most prevalent and effective initial compromise vectors for cybercriminals to gain unauthorized access to systems or data.

DEVELOPERS

Organizations developing technology related to Phishing.

  • Proofpoint

    A leading cybersecurity company specializing in email and cloud security, providing advanced threat protection against sophisticated phishing, spear phishing, and business email compromise (BEC) attacks.

  • Mimecast

    Offers a comprehensive suite of cloud-based email security services, including advanced threat protection designed to detect and prevent a wide range of phishing and impersonation attempts.

  • KnowBe4

    Specializes in security awareness training and simulated phishing attacks, helping organizations educate employees to recognize and avoid social engineering threats, including phishing.

  • Cofense

    Provides phishing detection and response solutions, empowering employees to report suspicious emails and automating the analysis and remediation of phishing threats.

  • Fortinet

    A global leader in cybersecurity solutions, offering a broad portfolio including email security (FortiMail) and web application firewalls that detect and prevent phishing attempts.

  • Microsoft

    Through Microsoft Defender for Office 365, Microsoft provides robust email security capabilities, including advanced anti-phishing protection to safeguard users from malicious email threats.

  • Barracuda Networks

    Offers cloud-based security solutions, including email protection that provides advanced threat detection, anti-phishing, and anti-fraud capabilities to protect against targeted attacks.

  • Vade Secure

    Leverages artificial intelligence to provide predictive email defense against sophisticated email-borne threats, including zero-day phishing, spear phishing, and ransomware.

RELATED TERMS IN THREATS & ATTACKS