Course Content
Cybersecurity Awareness for Corporate Teams

2.1 Anatomy of a Phishing Email

Phishing has evolved beyond “Nigerian Prince” scams. It is now highly targeted.

  • The Sender (Spoofing):

    • Display Name Spoofing: The email says “IT Support,” but the address is support@gmail.com.

    • Typosquatting: The domain is c0mpany.com instead of company.com.   

  • The Subject (Emotional Triggers): Attackers exploit the “Amygdala Hijack”—triggering an immediate emotional response (Fear, Greed, Urgency, Curiosity) to bypass the logical brain.   

  • The Payload:

    • Malicious Links: URLs that lead to fake login pages to harvest credentials.

    • Weaponized Attachments: Word docs with malicious Macros enabled