Your company is participating in a Cyber Security Education Program.
This Corporate Facebook Phishing Attack included the following social engineering techniques:
- Corporate initiative which orders action: (example: "Click the button below").
- Use of several corporate logo/images (example: Company and Facebook Logos) to create familiarity.
- Spoofed domain associated with your company to appear official (example: <company>-fbbiz.lang-en.ca).
How to spot this was a phishing email:
- Was this an email you expected to receive? No - Be cautious
- Has this communicated through a company all hands from HR or the corporate marketing department?
- The sender named email address was not consistent [name and email address do not agree] (example: Facebook Business <do-not-reply@secure-login.host>)
- The primary domain was not correct for Facebook (example: <company>-fbbiz.lang-en.ca is not associated with facebook.com).
- This email was/may have been filtered and in your junk mail folder.