Phishing is a subset of a social engineering attack that has been wreaking havoc since the ’80s. Phishing can be done in many forms, but the end goal is the same – users are tricked into giving out sensitive information by fraudulent actors who masquerade as being legitimate. Many methods are used by these fraudulent actors to trick their users, and the common ones include spoofing, email links, pop-ups, and even phone calls. The sensitive information they seek includes usernames and passwords, social security numbers, credit cards, and other bank related information. Here are some major phishing scams you should know and various solutions on how to protect yourself against them;
电子邮件钓鱼欺诈
This is one of the most common and most utilized phishing scams. An email phishing scam involves a malicious actor masquerading as someone important in a company or even some known celebrity who sends a fraudulent email to unsuspecting users. The email usually contains a link to a fake or spoofed website designed in a way that it looks similar to for instance the company website.
This fake website will then ask users to provide sensitive or Personally Identifiable Information (PII). Since it seems real, unsuspecting users will give out the information which might later be used for fraud and identity theft.
保护:
- Do not open spam emails or even click links in emails without scrutiny
- 谨慎检查链接地址,确保您访问的网站以 HTTPS 开头。
网络钓鱼欺诈
This is another popular phishing scam similar to email phishing, but this involves voice hence the name vishing. This occurs through phone calls in which malicious actors trick unsuspecting users into giving out sensitive information.
保护:
- 在提供 PII 之前,一定要确认号码是否合法。大多数公司的网站上都有他们的电话号码。
- 如果来电者让您拨打另一个号码,请不要拨打。
技术支持骗局
This is some type of vishing in which malicious actors call unsuspecting individuals claiming that they are from a tech/security organization. They then trick the individual into believing that there’s malware in their system and that they will take care of the problem if the individual installs some remote desktop connection software.
如果受害者安装了该软件,骗子就会安装恶意软件,然后要求受害者付费删除恶意软件。
保护:
- 与网络钓鱼类似,在接受进一步指示前要确认电话号码。
- 切勿允许任何人远程访问您的电脑。
弹出式诈骗
弹出窗口是一种广告形式,当你上网时会出现一个图形丰富的小窗口。它们通常包含指向其他相关内容的链接。
Pop-ups can be dangerous especially when they are malicious. They can be intrusive, refuse to close and in turn open up several webpages. Other pop-ups may display a message warning you that your device is infected and entice you to click it for a free scan. They usually look legitimate, and most people fall for the trap.
保护:
- 安装广告拦截器/弹出窗口拦截器。
- 只允许来自可信网站的弹出窗口。
- 切勿点击弹出式窗口。
如果您被骗了,请采取以下措施;
- 更改所有密码
- 联系您的银行采取适当行动;以及
- 扫描设备,查找恶意软件和病毒。
使用 VPN - IPBurger VPN
Malicious actors may intercept your internet traffic especially on public Wi-Fi and propagate phishing attacks via various methods such as spoofing. To be secure on public Wi-Fi, always use IPBurger VPN. IPBurger VPN uses best in class encryption standard – the AES 256 bit to encrypt your internet traffic and tunnel it through a secure server till it reaches its destination. This encryption ensures your internet traffic is not visible to prying eyes, such scammers.





