Browse Definitions :
Quiz

Phishing season (quiz)

Ah, the festive season! Carolers come a-caroling; callers come a-calling and ... phishers come a-phishing. That's right -- for some miscreants, the festive season is also prime phishing season. And who needs help maxing out the cards this time of year? Take our quiz to find out how much you know about these holiday hazards. Don't get caught!

1. Is Rock Phish:
a. an organization of phishers
b. an anti-phishing organization
c. a rock group
Answer

2. In this agriculturally-themed spin on phishing, the perpetrator plants coding on the victim's computer. Once the host file is compromised, when the user types in a URL or clicks a bookmark, the browser will redirect to a phishing Web site -- which may appear quite legitimate. What is it?
Answer

3. Phishing emails most often appear to come from:
a. a friend
b. a well-known and trustworthy Web site
c. an unknown individual or organization
Answer

4. This further crime is typically the ultimate goal of the phisher. There are two variations: true name and account takeover. What is it?
Answer

5. The online scammer's equivalent of K-Tel's Fishin' Magician, this typically includes: Web site development software, complete with graphics, coding, and content that can be used to create convincing imitations of legitimate sites, as well as spamming software to automate the mass mailing process. What is it?
Answer

6. This is the corruption of an Internet server's domain name system table by replacing an Internet address with that of another, rogue address. Is it:
a. cookie poisoning
b. cache poisoning
c. URL poisoning
Answer

7. What kind of device is targeted in a variant of phishing known as SMiShing?
Answer

8. According to the New York Times, this type of phishing is likely to be conducted by sophisticated groups out for financial gain, trade secrets or military information rather than random hackers.
Answer

9. Many types of phishing rely, in part, upon this non-technical type of trickery, for example by convincing a user to give them authorization information. What is it?
Answer

10. In this variation, the attacker takes advantage of an inadequately protected broadband router to gain access to user data. What is it?
Answer

How many could you guess correctly without peeking? Let us know!

This was last updated in March 2008
SearchCompliance
  • OPSEC (operations security)

    OPSEC (operations security) is a security and risk management process and strategy that classifies information, then determines ...

  • smart contract

    A smart contract is a decentralized application that executes business logic in response to events.

  • compliance risk

    Compliance risk is an organization's potential exposure to legal penalties, financial forfeiture and material loss, resulting ...

SearchSecurity
  • threat modeling

    Threat modeling is a procedure for optimizing application, system or business process security by identifying objectives and ...

  • distributed denial-of-service (DDoS) attack

    A distributed denial-of-service (DDoS) attack is one in which multiple compromised computer systems attack a target, such as a ...

  • social engineering

    Social engineering is an attack vector that relies heavily on human interaction and often involves manipulating people into ...

SearchHealthIT
SearchDisasterRecovery
  • change control

    Change control is a systematic approach to managing all changes made to a product or system.

  • disaster recovery (DR)

    Disaster recovery (DR) is an organization's ability to respond to and recover from an event that affects business operations.

  • risk mitigation

    Risk mitigation is a strategy to prepare for and lessen the effects of threats faced by a business.

SearchStorage
  • bare-metal cloud

    Bare-metal cloud is a public cloud service that offers dedicated hardware resources without any installed operating systems or ...

  • race condition

    A race condition is an undesirable situation that occurs when a device or system attempts to perform two or more operations at ...

  • storage security

    Storage security is the group of parameters and settings that make storage resources available to authorized users and trusted ...

Close