Phishing tricks users into revealing credentials or installing malware. Over % of breaches start with phishing.
Standard phishing sends mass emails impersonating trusted entities. Links lead to fake login pages.
Spear phishing targets specific individuals with personalized messages.
Whaling targets executives for bigger payoffs.
Defenses include:
- Email filtering and link scanning
- User training to recognize suspicious messages
- Multi-factor authentication
- DMARC, DKIM, and SPF for sender verification