Your company is participating in a Cyber Security Education Program.
This Tax Address Phishing Attack included the following social engineering techniques:
- A "Lure" email was used to create a pre-text for the actual attack email.
- "Tax Forms" subject based on time of year.
- From email address using a fake domain which looks governmental (example: "accounts@bcsa-asfc-gc.ca")
- Unique email, password, link, ... specific for user to appear legitimate.
How to spot this was a phishing email:
- Was this an email you expected to receive? No - Be cautious
- Confirm with management or human resources.
- Always review sender email and determine if suspicious (example: "bcsa-asfc-gc.ca" not associated with government.)
- This email was/may have been filtered and in your junk mail folder.