An administrator learns of an e-mail that has been received by a number of users in the company. This e-mail appears to come from the office of the administrator. The e-mail asks the users to confirm their account and password information. Which type of security threat does this e-mail represent?
-
Cracking
-
Phishing
-
Phreaking
-
Spamming
B
Correct answer
Explanation
Phishing is a social engineering attack where fraudulent emails appear to come from trusted sources (like the administrator's office) to trick recipients into revealing sensitive information like passwords and account details. The email described matches this pattern exactly. Cracking involves breaking passwords or encryption, phreaking refers to hacking telecommunications systems, and spamming is unsolicited bulk email - none of which involve tricking users into voluntarily revealing credentials.