QuestionQ6

Essential Security Principles

Employees in a company’s accounting department receive an email about the newest federal accounting regulations. The email includes a hyperlink to register for a webinar that provides the latest updates on financial transaction security. The webinar is hosted by a government agency. As a security officer, you notice that the hyperlink directs to an unknown party.

Which type of cybersecurity threat should you investigate?

  • A Spear phishing
  • B Ransomware
  • C Smishing
  • D Vishing
Explanation

Spear phishing is a targeted phishing attack that uses a credible, role-relevant pretext to persuade a particular group to follow a malicious link or disclose information. An email directed at accounting employees and framed around accounting regulations and transaction security fits this pattern.

Community Discussion

No comments yet. Be the first to start the discussion!