i

Website Penetration Testing

Spear Phishing

Spear phishing is a phishing technique that targets specific individuals or groups within an organization. It is a compelling variant of phishing, a malicious tactic which uses emails, social media, instant messaging, and other platforms to get users to divulge personal information or perform actions that form network compromise, data loss, or financial loss. While phishing access may rely on shotgun methods that deliver mass emails to random individuals, spear phishing focuses on specific targets and involve prior research.

A classic spear-phishing attack includes an email and attachment. The email consists of information specific to the target, including the target's name and rank within the company. This social engineering ploy boosts the chances that the victim will carry out all the actions necessary for infection, including opening the email and the included attachment.