Phishing
Phishing
Phishing is the attempt to trick people, through forged messages, into disclosing credentials or performing harmful actions — for instance via a deceptively genuine e-mail with a link to a replicated login page. It targets not the technology but the person. It is one of the most common initial-access routes of all.
History & facts. Phishing ranges from the broad mass e-mail to targeted spear phishing against individuals and to „whaling“ against executives; related variants use SMS (smishing) or telephone (vishing). Attackers rely on pressure, urgency and trust — a supposed superior, an alleged deadline, a familiar brand. Increasingly, texts become linguistically flawless and convincing with the help of Artificial Intelligence (AI), devaluing classic detection cues.
Outlook & recommendation. Awareness is important but unreliable as a sole measure — at some point someone clicks. Technical safeguards carry more: phishing-resistant multi-factor authentication devalues even successfully captured passwords, e-mail protection mechanisms filter out many attempts in advance, and a fast reporting chain limits the damage of a hit. The key is not to see phishing as a pure user problem but as an organisational and technical task.