Add your business to ZipLeaf for free!
 United States Business Directory
What it is Phishing and how to protect your business

By Unitec Africa

What it is Phishing and how to protect your business

12/02/2020 Have you heard of phishing? In this post, we’ll talk about what it is, how phishing attacks are carried out and the dangers to your business. We’ll give you some examples of phishing attacks and, most importantly, share how you can keep your business protected.


What is phishing?
Phishing is the act of fraudulently obtaining sensitive information (such as usernames, passwords or credit card information) or fraudulently instigating a financial transaction by impersonating a legitimate entity.


How are phishing attacks carried out?
While often thought about as an “online crime”, phishing attacks are carried out in a variety of ways – via emails, fake websites and even by phone call. Phishing attempts are often are very convincing and will include elements of social engineering.


What are the dangers to an organisation?
The end game for a criminal attempting a phishing scam is, of course, money. Businesses can suffer financial losses due to misdirected payments, be held to ransom when their data is encrypted, and suffer damage to their reputation due to these data breaches.


Some examples of phishing attacks.
Some phishing attaches are very easy to spot, but more and more the emails and websites used are highly sophisticated. At first glance, they can appear to be very legitimate. A few examples of where organisations have fallen victim to a successful phishing attack:


“Imagine your payables administrator has a large payment to a regular vendor coming up – the criminals would know the exact details from the email communications between the two businesses. Just before the legitimate transfer is due to be processed, the criminals get in touch, under the guise of the legitimate vendor, and request an update to the banking info. With so much valid information, they’re often not questioned.”


How can you protect your organisation from falling victim to phishing attacks?
Education is the best defence against phishing attacks. Phishing is an ongoing threat, and the risk is even larger for staff working in the financial areas of your business. We’ve compiled some useful tips and listed them below.


Watch out for generic greetings – Many phishing campaigns are carried out in bulk, meaning the cybercriminals will use greetings similar to “Dear Sir/Madam” or “Dear Customer” rather than your name. If your name isn’t listed, be immediately suspicious. However, having your name listed is not a guarantee of legitimacy.


Examine the sender information – Carefully examine the sender information, particularly the email address. Sophisticated phishing attacks will make a subtle change to a legitimate email address in the hopes it won’t be noticed by the receiver. For example, it might be a little difficult to notice the discrepancy in and address like info@sa.absa.com (did you see the “sa” the first time?).


Examine links before clicking – If an email asks you to click on a link, ensure that you ensure it’s pointing exactly where you expect. Hover over the link to view the actual destination. If it’s different to the link text, don’t click. You can always access the legitimate website by typing the usual address into your browser’s address bar and going from there. If there’s any doubt – don’t click.


Be wary of urgency – It’s in the criminals’ best interest to have you act as soon as possible. Often phishing emails will try to create a sense of urgency in the hopes that the receiver will react without taking the precautions we’re mentioning here. An email from your “bank” might inform you that your accounts will be seized if you don’t log in within the hour, for example.


Pick up the phone – Have procedures in place for when certain changes are requested. The staff member processing these changes can easily verify the legitimacy of a request by simply picking up the phone for confirmation. It’s one quick, simple way you can protect your organisation from becoming a victim


If you’d like to review any of these items, or discover other ways to protect your organisation from cyber threats, please get in touch by calling 087 551 7689 or emailing hello@unitecafrica.co.za


About This Author

Unitec Africa

Unitec Africa

Unitec Africa | IT Services & IT Consultant - Connectivity, Cloud, Security, Support ETC.Unitec (https://www.unitecafrica.co.za) are an international technology company with offices Ireland and South Africa. Established in 2009, Unitec were quickly acknowledged as one of Ireland’s most innovat…

Read More »

More Articles From This Author

IT Service team update during the COVID 19 crisis

IT Service team update during the COVID 19 crisis

12/02/2020 To all our Valued Customers,We have recently witnessed drastic measures implemented by governments globally in response to the COVID-19 crisis and we are now all effectively experiencing a new normal with of lockdown measures. Working from home where possible, social distancing and good hygiene all... Read More »

IT Security and Compliance by Unitec Africa

IT Security and Compliance by Unitec Africa

12/02/2020 Data security and compliance are areas of great concern for all businesses but addressing these areas can lead to business owners getting bogged down. Often, they simply end up just sticking their heads in the sand. As with many things in life, this approach clearly doesn’t work, and leaves busine... Read More »

Remote IT Working Solutions From Unitec Africa – Work Anywhere, Anytime on Any Platform

Remote IT Working Solutions From Unitec Africa – Work Anywhere, Anytime on Any Platform

12/02/2020 Remote working from home solutions IT - https://www.unitecafrica.co.za/ACCESSIBLE EXPERTISE with Unitec Africa, for business continuity in a time of rushed deployment of remote IT services due to the Covid-19 pandemic. If you need accessibility, security and enablement of your businesses IT for the... Read More »

Secure Remote IT Working Solutions in Johannesburg

Secure Remote IT Working Solutions in Johannesburg

12/02/2020 The global pandemic has for many, been the unintentional driver of digital transformation within organisations. Rapid deployment of remote workplace solutions, with a focus on speed of deployment being the priority, critical in ensuring business continuity in a chaotic environment for if not all org... Read More »