I-Whaling ne-Spear Phishing Ngokuvamile I-Scam Engalungile

I-Whaling uhlobo oluthile lokuphinga okubhekiswe kubasebenzi bebhizinisi eliphezulu, imenenja, nokunye okunjalo. Akufani nokuphithiza okujwayelekile kuleyo ndlela nge-whaling, ama-imeyili noma amakhasi ewebhu abhekene nokuhlaselwa athatha ukubukeka okusemthethweni noma okubaluleke kakhulu futhi ngokuvamile aqondisa umuntu ngokukhethekile.

Ngombono, ukuphishekela okungajwayelekile okungeyona i-whaling ngokuvamile kuwumzamo wokuthola ulwazi lomuntu lokungena ngemvume kumasayithi omphakathi wezenhlalo noma ebhange. Kulezo zimo, i-imeyli ye-phishing / isayithi ibukeka sengathi iyinto evamile, kanti nge-whaling, leli khasi lenzelwe ukubhekana ngokuqondile nomphathi / isiphathimandla okuhlaselwa kuso.

Qaphela: Ukukhwabanisa ngomsindo kuyisimo sokuhlaselwa ngobugebengu obunobungozi obomuntu othile, njengomuntu ngamunye noma inkampani. Ngakho-ke, i-whaling ingase ibhekwe njengomkhonto wokuphanga.

Iyini Injongo Ye-Whaling?

Iphuzu ukuphoqa othile kumphathi ophezulu ekudaluleni imininingwane yenkampani eyimfihlo. Lokhu kuvame ukuza ngendlela yephasiwedi ku-akhawunti ebucayi, lapho umhlaseli angafinyelela khona ukuze athole ulwazi oluthe xaxa.

Umdlalo wokuphela kuwo wonke ukuhlaselwa kobugebengu obufana nobugebengu obunamahloni njengokwama-whaling ukumethusa umamukeli; ukuze ubaqiniseke ukuthi badinga ukuthatha isinyathelo ukuze baqhubeke, njengokugwema izimali zomthetho, ukuvimbela ekuxosheni, ukumisa inkampani ekuqothulweni, njll.

Kuyini Ukuqhekeka Kwe-Whaling Kubukeka?

I-Whaling, njenganoma imuphi umdlalo we-phishing con, ihilela ikhasi lewebhusayithi noma i-imeyli eyenza i-masquerades njengenye evumelekile futhi ephuthumayo. Zenzelwe ukubukeka njenge-imeyili yebhizinisi elibucayi noma into evela kumuntu onamandla asemthethweni, ngaphandle noma ngaphakathi ngaphakathi kwenkampani uqobo.

Umzamo wokuhlambalaza ungase ubukeke njengesixhumanisi kwiwebhusayithi evamile ojwayele. Cishe icela ulwazi lwakho lokungena ngemvume njengoba nje ungalindela. Nokho, uma ungaqapheli, kwenzekani ngokulandelayo inkinga.

Uma uzama ukuhambisa imininingwane yakho emasimini okungena ngemvume, mhlawumbe utshele ukuthi ulwazi alungile nokuthi kufanele uzame futhi. Ayikho umonakalo owenziwe, akunjalo? Uvele ungene ngephasiwedi yakho ngokungalungile ... Nokho, lokho kuyi-scam, noma kunjalo!

Okukwenzeka ngemuva kwezigcawu ukuthi uma ufaka imininingwane yakho kwisayithi eyi-fake (okungenakungena ngemvume ngempela ngoba akuyona yangempela), ulwazi olufakile luthunyelwa kumhlaseli bese uqondiswa kabusha iwebhusayithi yangempela. Uzama futhi iphasiwedi yakho futhi isebenza kahle.

Ngalesi sikhathi, awukwazi ukuthi leli khasi laliyikhohlisi nokuthi othile usuke weba iphasiwedi yakho. Noma kunjalo, umhlaseli manje unegama lomsebenzisi nephasiwedi kuwebhusayithi owacabanga ukuthi ungene kuyo.

Esikhundleni sokuxhumanisa, ukugaxeka kobugebengu bokuphanga kungenzeka ukuthi ulande uhlelo ukuze ubuke idokhumenti noma isithombe. Lolu hlelo, kungakhathaliseki ukuthi lwangempela noma cha, lubuye lube nezwi eliphansi elibi elisetshenziselwa ukulandelela konke okuthayiphayo noma ukususa izinto kusuka kukhompyutha yakho.

Indlela Ukugubula Kuhluke Kanjani Kwamanye Ama-Phishing Scams

Esikhathini esidlwengulwe ngokuphanga, ikhasi lewebhu / i-imeyli ingaba isilumkiso esivela ebhange lakho noma i-PayPal. Ikhasi le-faked lingase lisabise lokho okushiwo yizimangalo ukuthi i-akhawunti yabo ikhokhisiwe noma ihlaselwe, nokuthi kumele bafake i-ID yabo nephasiwedi ukuqinisekisa ukukhokhiswa noma ukuqinisekisa ukuthi bangubani.

Endabeni ye-whaling, ikhasi lewebhu le-web eliqhakazile / i-imeyili lizothatha ifomu eliphakeme kakhulu le-executive-level. Okuqukethwe kuzokwakhiwa ukuze kuhloswe imenenja ephezulu njengoMphathi Omkhulu noma ngisho nomphathi ongase abe nokudonsa okuningi enkampanini noma okungenzeka abe neziqinisekiso kuma-akhawunti abalulekile.

I-imeyli ye-whaling noma i-website ingafika ngesimo se-subpoena yamanga, umlayezo oyiphutha ovela ku-FBI, noma uhlobo oluthile lwezikhalazo zomthetho ezibucayi.

Ngingazivikela Kanjani Ekuhlaselweni Kwe-Whaling?

Indlela elula yokuzivikela ekuweleni ukukhwabanisa kwe- whaling, kumele uqaphele lokho okuchofoza. Kuyinto elula ngempela lokho. Kusukela ku-whaling kwenzeka ngaphezu kwama-imeyili namawebhusayithi, ungagwema zonke izixhumanisi zamanga ngokuqonda ukuthi yini engokoqobo nokuthi yini engekho.

Manje, akunakwenzeka ngaso sonke isikhathi ukwazi ukuthi yiyiphi inkohliso. Ngezinye izikhathi, uthola i-imeyili entsha evela kumuntu ongakaze uthumele i-imeyili ngaphambili, futhi bangakuthumela okuthile okubonakala kubonakala kungokomthetho.

Kodwa-ke, uma ubheka i- URL kusiphequluli sakho sewebhu futhi uqiniseke ukuthi ubukeka nxazonke kusayithi, ngisho nesikhashana, ngezinto ezibukeka kancane, unganciphisa amathuba akho okuhlaselwa ngale ndlela.

Bheka Indlela Yokuzivikela Ezingcebeni Zokuphishingana ukuze uthole olunye ulwazi.

Ingabe Abaphathi nabaphathi bawela ngempela kulawa ma-imeyili aphikisayo?

Yebo, ngeshwa, abaphathi bavame ukuwela ukuhlaselwa kwe-imeyili ye-whaling. Thatha u-2008 FBI subpoena scam whaling njengesibonelo.

Abaphathi bama-CEO abangu-20,000 bahlaselwa futhi cishe ngo-2000 kubo bawa ngenxa yokuqhakaziza ngokuchofoza isixhumanisi ku-imeyili. Babekholelwa ukuthi kuzokhipha isengezo esikhethekile sokufaka isiphequluli ukuze ubuke yonke i-subpoena.

Eqinisweni, isofthiwe exhunyiwe yayiyi-keylogger eyabhala ngasese amaphasiwedi we-CEO futhi yathumela lawo maphasiwedi kumadoda axhunyiwe. Ngenxa yalokho, izinkampani ezikhohlisiwe zakwa-2000 zazingenwa ngisho nakakhulu manje njengoba abahlaseli babe nolwazi oluyidingayo.