How to Identify 5 Common Phishing AttacksThe likeliest cyber threat individuals or small companies will face is an email with an urgent tone and prying questions.

ByKen Levine

Opinions expressed by Entrepreneur contributors are their own.

Shutterstock

Phishing attacks are emails or malicious websites (among other channels) that solicit personal information from an individual or company by posing as a trustworthy organization or entity. The goal of a phishing is to trick the recipient into taking the attacker's desired action, such as providing login credentials or entering identifying information into a fraudulent website. These websites may contain malicious code that executes on the user's local machine when a link is clicked from a phishing email to open the website.

Entrepreneurs and small businesses can be especially vulnerable to these types of threats, as many of these organizations lack the full-featured network and data security processes and protocols that large organizations employ. Vigilance will help prevent an individual or organization from falling victim to a phishing attack that puts sensitive personal and corporate data at risk.

Related:The Phishing Expedition You Want to Avoid This Summer

5 types of phishing attacks.

Phishing attempts most often take the form of an email that seemingly comes from a company the recipient knows or does business with.USA.govlists some widespread phishing scams reported from agencies and corporations, revealing that phishing emails can take many forms. Five of the most popular forms of phishing attacks are:

  1. Emails from people claiming to be stranded in a foreign country, asking you to wire money so that they can travel home.
  2. Emails claiming to be from reputable news organizations capitalizing on trending news. These emails generally ask recipients to click a link to read the full story, which in turn leads the user to a malicious website.
  3. Emails claiming to be from organizations like the FTC and FDIC, referencing complaints filed or asking recipients to check their bank deposit insurance coverage.
  4. 电子邮件威胁要伤害除非资金接受者in the thousands of dollars are paid.
  5. Emails claiming to be a confirmation of complaints filed by the recipient. Not having logged any complaints, recipients are inclined to click on these links to find out what is being referenced. The links and attachments contain malicious code.

Phishing emails can take other forms, but all types make it difficult for recipients to filter out phishing emails from legitimate messages.

Related:IBM Uncovers New, Sophisticated Cyber Scam Targeting Businesses

How to identify phishing attacks.

Phishing is most often initiated through email communications, but there are ways to distinguish suspicious emails from legitimate messages. Training yourself and employees on how to recognize these malicious emails is a must for companies to prevent sensitive data loss. Often, these data leaks occur because employees were not armed with the knowledge they need to help protect critical company data. The following may be indicators that an email is a phishing attempt rather than an authentic communication from the company it appears to be:

  • Emails with generic greetings. Phishing emails often include generic greetings, such as "Hello Bank Customer" rather than using the recipient's actual name.
  • Emails requesting personal information. Legitimate companies never ask customers to enter login credentials or other private information by clicking on a link to a website. This is a safety measure to protect consumers and help customers distinguish fraudulent emails from legitimate ones.
  • Emails requesting an urgent response. Most phishing emails attempt to create a sense of urgency, leading recipients to fear that their account is in jeopardy or they will lose access to important information if they don't act immediately.
  • Emails with spoofed links. Does a hyperlink in the message body actually lead to the page it claims? Never click on these links to find out; instead, hover over the link to verify its authenticity. Also, look for URLs beginning with HTTPS. The "S" indicates that a website uses encryption to protect users' page requests, and that it's from an authorized certificate authority.

When in doubt, call. If the content of an email is raises concerns, call the company in question to find out if the email was sent legitimately. If not, the company is now aware and can take action to warn other customers and users of potential phishing attempts appearing to come from their organization.

Related:8 Simple Ways to Minimize Online Risk

Ken Levine brings more than 20 years of startup and business leadership experience to his role at Digital Guardian. He previously served as senior vice president and general manager at McAfee (now Intel Security), via its 2011 acquisition of NitroSecurity, a developer of security information and event management (SIEM) tools, where he was CEO and Chairman.

Editor's Pick

Related Topics

Business News

A United Airlines Passenger Was Overjoyed to be Upgraded to First Class — Then He Was Threatened to Be Put on a No-Fly List.

A traveler's journey went from serendipitous to unsettling when he requested a manicotti for the second leg of his trip, which was in economy seating.

Franchise

Beyond Borders — How Successful Franchises Thrive in Diverse Markets

Successful franchises can adapt and deliver their products and services in any corner of the world.

领导

The 'Risk Tax' and 'Punishment Tax' Could Be Derailing Women's Careers. Here's How to Recognize — and Avoid — Them in Your Organization.

Dr. Yasmene Mumby, a sustainable leadership advisor and founder of The Ringgold, explains how women, particularly those of color, are held to different standards at work — and what we can do to change that.

Employee Experience & Recruiting

The Pros and Cons of Hiring Family Members in a Small Business

While conventional wisdom discourages small business owners from hiring members of the same family, there are actually smart and strategic reasons to do so — but there are still drawbacks to consider. Here's what you should know about hiring employees who are family members.

Business News

Airlines Are Finally Fixing the Shrunken Seats That Make Flying So Miserable — Here's What to Expect

Delta, United Airlines and more have announced some big — and expensive — changes.

Business News

Millions of Amazon Packages Will Now Arrive Without Any Packaging At All

The e-commerce giant is now offering customers the option of less or zero packaging. Customer responses have ranged from criticism to praise for the eco-friendly move.