2.1 Anatomy of a Phishing Email
Phishing has evolved beyond “Nigerian Prince” scams. It is now highly targeted.
-
The Sender (Spoofing):
-
Display Name Spoofing: The email says “IT Support,” but the address is
support@gmail.com. -
Typosquatting: The domain is
c0mpany.cominstead ofcompany.com.
-
-
The Subject (Emotional Triggers): Attackers exploit the “Amygdala Hijack”—triggering an immediate emotional response (Fear, Greed, Urgency, Curiosity) to bypass the logical brain.
-
The Payload:
-
Malicious Links: URLs that lead to fake login pages to harvest credentials.
-
Weaponized Attachments: Word docs with malicious Macros enabled
-