Your company is participating in a Cyber Security Education Program.
This Tax Assessment Phishing Attack included the following social engineering techniques:
- Topical subject: Tax Assessment.
- Use of a "lure email" to lower your guard when receiving the actual phishing email.
- Use of government of Canada logo to look authentic.
- Spoofed domain to appear it comes official domain (example: cbsa.lang-fr-en.ca).
- Presented in both English and French to appear official.
How to spot this was a phishing email:
- Was this an email you expected to receive? No - Be cautious
- Did you file your taxes using this email?
- The sender named email address was not coming from government of Canada (example: gov-ca@secure-login.host).
- The primary domain was not correct for government of Canada (example: official domains are canada.ca or cra-arc.gc.ca).
- The link provided used suspicious/spoofed domain (example: cbsa.lang-fr-en.ca).