Search Header Logo
DIS Social Engineering and Phishing Emails

DIS Social Engineering and Phishing Emails

Assessment

Presentation

Instructional Technology

University

Practice Problem

Medium

Created by

Megan Hull-Burg

Used 6+ times

FREE Resource

8 Slides • 15 Questions

1

Social Engineering and Phishing Emails

With your IT dept: Derek, Tyler, Cindy, Brian, and Meg

media

2

3

Social Engineering

The tactic of manipulating, influencing, or deceiving a victim in order to gain control over a computer system, or to steal personal and financial information. It uses psychological manipulation to trick users into making security mistakes or giving away sensitive information.

Discuss with those around you:

What emotions could SEs use to achieve this?

media

4

Common phishing email #1

media

5

Common phishing email #2

media

6

Common phishing email #3

media

7

Time to Test your knowledge!

media

8

Multiple Select

Question image

Which of the following subject lines in an email should alert you to possible social engineering? *choose all that contain red flags* Discuss with those around you before answering.

1

Immediate password check required

2

Billing information is out of date

3

Payroll has been delayed

4

Your meeting attendees are waiting!

5

Dropbox: Document shared with you

9

Multiple Select

Question image

Which emotions do social engineers attempt to use against their targets? *Select all that apply* Discuss with those around you before you reply.

1

greed

2

curiosity

3

urgency

4

helpfulness

5

fear

10

Multiple Choice

Question image

How do you find the domain in an email address?

1

extract the text after the '@' symbol

2

extract the text before the @ symbol

3

a domain is the @ symbol

4

the domain is the full email address

11

Multiple Select

Question image

What are the red flags that indicate this is a phishing email? *more than 1*

1

hyperlink to an urgent matter

2

generic greeting

3

grammar mistakes

4

email is addressed to user

12

Multiple Select

Question image

What are the red flags that indicate this is a phishing email? *more than 1*

1

log in link provided instead of directing me to their website

2

It asks me to download a file

3

urgent request

4

email domain

5

Paypal logo is incorrect

13

Multiple Select

Question image

Is this a legitimate or a phishing email?

1

I'm confident this is legit

2

I honestly can't tell

3

This is definitely phishing

14

Multiple Select

Question image

Is this a legitimate or a phishing email?

1

I'm confident this is legit

2

I honestly don't know

3

This is definitely phishing

15

Multiple Select

Question image

Is this a legitimate or a phishing email?

1

I'm confident this is legit

2

I honestly don't know

3

This is definitely phishing

16

Multiple Select

Question image

Is this a legitimate or a phishing email?

1

I'm confident this is legit

2

I honestly don't know

3

This is definitely phishing

17

Multiple Select

Question image

Is this a legitimate or a phishing email?

1

I'm confident this is legit

2

I honestly don't know

3

This is definitely phishing

18

Multiple Select

Question image

Is this a legitimate or a phishing email?

1

I'm confident this is legit

2

I honestly don't know

3

This is definitely phishing

19

Multiple Select

Question image

Is this a legitimate or a phishing email?

1

I'm confident this is legit

2

I honestly don't know

3

This is definitely phishing

20

Multiple Select

Question image

Is this a legitimate or a phishing email?

1

I'm confident this is legit

2

I honestly don't know

3

This is definitely phishing

21

Multiple Select

Question image

Is this a legitimate or a phishing email?

1

I'm confident this is legit

2

I honestly don't know

3

This is definitely phishing

22

Multiple Select

Question image

Is this a legitimate or a phishing email?

1

I'm confident this is legit

2

I honestly don't know

3

This is definitely phishing

23

Social Engineering Tips!

  • No Geolocation info - don’t post where you are or will be

  • Locking Social Media down - block from public

  • Password reuse - Different passwords for different accounts

  • If you are not sure, ask.  You can always call or reach out to the sender directly or go to a company's website.  Replying to a suspicious email may not be safe.

media

Social Engineering and Phishing Emails

With your IT dept: Derek, Tyler, Cindy, Brian, and Meg

media

Show answer

Auto Play

Slide 1 / 23

SLIDE