Your company is participating in a Cyber Security Education Program.
This Sharefile Phishing Attack included the following social engineering techniques:
- Impersonation: The message claims to be from ShareFile to make the request appear legitimate.
- Urgency: “Signature Required” encourages the recipient to act quickly.
- Phishing link: Link inserted to make it easy to engage.
- Familiarity: Referring to “your company” makes the message feel like a routine workplace request.
How to spot this was a phishing email:
- Unexpected message?: Were you expecting a document that required your signature? If not, verify the request before clicking.
- Check the sender domain and link: the domain looks related to ShareFile, but it is not the expected ShareFile domain. (ex: reply-sharefile.com)
- Vague or missing details: The message does not identify the document, who sent it, or why your signature is required.
- Be cautious with requests to click: The email directs you to a link to view and sign the document rather than providing enough information to verify the request first.
