- Phishing is a type of cyber attack where attackers deceive users by sending fake emails or messages that appear to come from trusted sources, tricking them into visiting fraudulent websites and entering sensitive information like usernames and passwords.
- Attackers want your data for various reasons, including committing identity fraud (using your identity to make purchases), taking over computer networks, accessing private emails, or stealing customer records. They gain this access by tricking people into giving them login information.
- A targeted phishing attack is called a spear phishing attack. These are especially dangerous because the attacker often knows personal details about the target (like name, address, or job title) gathered from social media, making the fake message seem more believable.
- You can spot phishing attacks by paying close attention to the website’s address bar in your browser. Attackers use domains that look similar to legitimate ones but are not the same (e.g., “accounts-google.com” instead of “google.com”). Always ensure the URL matches the official site you expect, and if unsure, search for the site directly and log in from its root domain.
- An even better way to secure your account against phishing is to use 2FA (two-factor authentication), which requires a second form of verification (like a code sent to your phone) in addition to your password, making it much harder for attackers to gain access even if they steal your login credentials.
Parent Tip: Review the logic above to help your child master the concept of printable reading passages with questions.