๐ŸŽฃ Phishing Attacks

Episode 3: Spear Phishing

1. The Scenario

Story from HKCERT animation videos

Ah Chun desperately wants a new VR Racing Game Console, but it's sold out everywhere. The Hacker (Keung) sees this and decides to trick him.

2. The Trap: Social Engineering

๐Ÿ•ต๏ธ
Stalking Targets

The hacker didn't guess; he looked at Ah Chun's Public Social Media. Ah Chun liked pages about "Electronics" and "Gaming".

๐Ÿšจ Spear Phishing: A phishing attack customized for YOU based on your personal interests, making it much harder to spot than a generic spam email.

3. Spot the Fake Email

The Hacker sent a fake email claiming Ah Chun won a free console. Here is how to spot the scam:

  • Check the Sender: The email name claimed to be "Digital Expo," but the actual address didn't match the official website.
  • Typos: Scams often have spelling mistakes or strange grammar.
  • Too Good to be True: A free console just for filling out a form? Be suspicious!
  • Sensitive Info: They asked for passwords and bank info immediately. Legitimate giveaways rarely do this.

4. What happens if you click?

๐Ÿฆ 
Ransomware (ๅ‹’็ดข่ปŸไปถ)

If you click the link, your computer files get Encrypted (locked). The hacker demands money (ransom) to unlock them.

๐Ÿ›ก๏ธ The Golden Rule: DO NOT PAY. There is no guarantee they will unlock your files. Contact HKCERT or police instead.

๐Ÿ“ Phishing Quiz