📖 What is Phishing?

Phishing is a social engineering attack employing deceptive electronic communication, such as email or websites, to trick individuals into revealing sensitive data. Attackers often impersonate legitimate entities to gain trust and steal credentials, financial information, or personal details.

🥋 Sensei Says:

"Recognize the indicators of phishing attempts, including suspicious sender addresses, grammatical errors, and urgent requests for information. Understand the difference between phishing, spear phishing, and whaling attacks, and the associated risk levels."

📚 Certification: CompTIA A+ Certification Exam Core 2 (220-1102)

🔑 What are the Key Concepts of Phishing?

  • Spear phishing targets specific individuals or organizations, making it more convincing than broad phishing campaigns.
  • Whaling is a highly targeted phishing attack aimed at high-profile individuals like CEOs, often resulting in significant data breaches.
  • Recognizing indicators like poor grammar, suspicious links (hover to reveal the true URL), and urgent requests is crucial for prevention.
  • Phishing attacks often leverage current events or popular brands to appear legitimate and increase the likelihood of success.
  • User education is a primary defense against phishing; training employees to identify and report suspicious activity is essential.

🎯 How does Phishing appear on the 220-1102 Exam?

You may be asked to identify a user action that *best* protects against phishing attacks, such as enabling multi-factor authentication or verifying links before clicking.

A scenario might describe an employee receiving an email requesting password reset – expect questions about whether this is a legitimate request or a phishing attempt.

Expect questions about the impact of a successful phishing attack, including data breaches, financial loss, and reputational damage to an organization.

❓ Frequently Asked Questions

What's the difference between phishing and malware?

Phishing *delivers* malware, or attempts to steal credentials directly. Malware is the malicious software itself, while phishing is the technique used to distribute it or gain access.


How can I identify a phishing email even if it looks legitimate?

Look for inconsistencies in the sender's email address, generic greetings, and urgent or threatening language. Hover over links *without* clicking to see the actual destination URL.


What should I do if I suspect I've responded to a phishing attempt?

Immediately change your passwords for any affected accounts, report the incident to your IT department (if applicable), and monitor your accounts for suspicious activity. Consider enabling two-factor authentication.

Related Terms from CompTIA A+ Certification Exam Core 2

📝 Related Study Guides

Study Guide 10 min read

CompTIA A+ Core 2 (220-1102): How to Pass and Study Plan

To pass the CompTIA A+ Core 2 (220-1102) exam, you must score at least 700/900. Focus on the four key domains: Operating Systems (31%), Security (25%), Software Troubleshooting (22%), and Operational Procedures (22%). Success requires mastering OS command lines, security protocols, and a systematic troubleshooting methodology through rigorous practice exams.

Comparison 7 min read

NTFS vs FAT32 vs exFAT: A+ Core 2 File System Guide

NTFS is the Windows standard featuring security permissions and journaling. FAT32 offers maximum compatibility but limits individual files to 4GB. exFAT bridges the gap, removing the 4GB limit while maintaining cross-platform support for flash drives. Choosing the right one depends on the required security, file size, and OS compatibility.

Study Guide 8 min read

CompTIA A+ Core 2 (220-1102): Domains, Tips & Study Plan

To pass the CompTIA A+ Core 2 (220-1102) exam, you must master four domains: Operating Systems (31%), Security (25%), Software Troubleshooting (22%), and Operational Procedures (22%). Success requires a score of 700/900. The best strategy combines hands-on OS practice, understanding security protocols, and solving 1,000+ high-quality practice questions to build exam stamina.

🧠

Test Your Knowledge

Think you understand Phishing? Put it to the test with our practice exam.

Try 10 Free Questions

⭐ 1,000 expert-curated questions available with Premium

Upgrade Premium