Your company is participating in a Cyber Security Education Program.


This Voicemail Phishing Attack included the following social engineering techniques:


  1. Impersonation email to appear as if the message is from someone within your organization.
  2. Use of your name to personalize the message.
  3. A time limit to create a sense of urgency.
  4. Link inserted to make it easy to engage.
  5. Usually from an authority figure to encourage interaction.
  6. Overloading the sender name field to make the message appear legitimate.



How to spot this was a phishing email:


  1. Was this an email you expected to receive? No - Be cautious
  2. Beware of links inserted in emails.
  3. The sender email address does not match the official email of the impersonated sender.
  4. The link provided used suspicious/spoofed domain similar to above (example: locked-outlook.com).


“An employee is either an asset to your cyber security or a risk.”