Common Phishing Scams and Best Practices to Avoid Falling Victim

DF SafetyWorkplace Safety

If you use the internet, you have likely seen or heard about someone who has fallen victim to a phishing scam. Between texts, emails and calls, there is a variety to be aware of, and it’s vital that you be aware and cautious when online. In today’s blog, we want to discuss some of the most common scams and offer best practices to help avoid falling for one.  

Common Types of Phishing Scams 

Email Phishing 

Email phishing is one of the most common and convincing forms of a phishing scam. Phishing occurs when a fake email is sent, pretending to be from a trusted organization such as your workplace, bank, delivery service, or colleague. They create urgency with their claims, such as money being lost, an account being locked, or losing a particular service to make you feel like it’s necessary to click on the link provided.  

Red flags to watch for: 

  • Unknown or unusual email address 
  • Generic greetings  
  • Attachments or links that aren’t expected 
  • Spelling, grammar or formatting errors 

If you are unsure about the email, or think it might be a scam, never click on any links. Delete the email and report to your IT team. 

Spear Phishing 

This is a type of attack that is aimed at a specific person or company, where they use personal details to make it seem more convincing. 

Red flags to watch for: 

  • Requests sensitive information or requires payment 
  • Spelling, grammar or formatting errors 
  • Suspicious email address 
  • Pressure or threats 

Smishing 

Smishing is a form of phishing through text messages. These could include messages claiming that there are issues with a delivery, banks, or account security.  

Red flags to watch for: 

  • Shortened or unusual looking links 
  • Pressure to act immediately 

Vishing 

Also known as voice phishing, scammers will call pretending to be tech support, your bank or a government agency.  

Red flags to watch for: 

  • Requests for passwords or one-time codes 
  • Threats or scare tactics 

Best Practices to Avoid Falling Victim 

  • Never click unknown links or open attachments from unexpected messages 
  • Verify requests by contacting sender through known contact information 
  • Check URLS carefully by hovering over the link 
  • Be suspicious of urgency or threats 
  • Use multi factor authentication (MFA) 
  • Keep your systems and browsers updated 
  • Install email and spam filters 
  • Never share passwords or one-time codes 
  • Report any suspicious messages to your IT provider 

Scammers frequently prey on individuals who are less informed or more inclined to click on links, including older adults. It’s crucial to educate yourself and your loved ones, especially parents and family members, about common scams and the warning signs to look for. 

Additionally, DF Safety offers an online Cyber Awareness Training course, which is geared towards both professional and personal use. This course outlines helpful and practical ways to stay safe while using digital devices. If you have any questions about this course, or others, please contact our team

It’s important to understand the different types of phishing scams so that you can keep yourself safe online. Using caution and being aware of what to look for can help ensure you don’t fall victim.