Your company is participating in a Cyber Security Education Program.


This Unsubscribe Phishing Attack included the following social engineering techniques:


  1. Newsletter type emails which are ubiquitous.
  2. Topic (example: job search) you wouldn't want your co-workers or employer to see.
  3. Use of your name to customize the email.
  4. Use of spoofed domain (example: vancouverjobsshop.ca) to resemble/sound like a legitimate company you might be familiar with.
  5. Simple clean email to minimize suspicion.
  6. Many hyperlinks so you can "Unsubscribe" or continue to investigate.


How to spot this was a phishing email:


  1. Was this an email you expected to receive? No - Be cautious
  2. Did you recently subscribe to a newsletter or service?
  3. Legitimate services would require you to confirm your email.
  4. The sender named email address was generic.
  5. Brining up browser and typing in domain used isn't valid  (example: jobs@vancouverjobsshop.ca).
  6. The link provided used suspicious domain similar to above.


“An employee is either an asset to your cyber security or a risk.”