With stolen data, fraudsters can reveal commercially sensitive information, manipulate stock prices or commit various acts of espionage. Spear phishing is an email or electronic communications scam targeted towards a specific individual, organization or business. Spear Phishing (vom englischen = Speerfischen) ist eine besondere Form des Phishing, also dem „Angeln“ von benutzerbezogenen Informationen oder sensiblen Unternehmensdaten, mit denen in ein System gelangt und/oder Eigentum entwendet werden kann. … Scammers typically go after either an individual or business. Bei Spear-Phishing handelt es sich um eine Betrugsmasche per elektronischer Kommunikation, die auf bestimmte Personen, Organisationen oder Unternehmen abzielt. While ordinary phishing is quantitative, spear-phishing is more qualitative and focused. A type of phishing attack that focuses on a single user or department within an organization, addressed from someone within the company in a position of trust … Your gateway to all our best protection. Spear phishing is an email or electronic communications scam targeted towards a specific individual, organisation or business. Usually, the intended targets of spear phishing are executives whose info is worth a lot of money. Access our best apps, features and technologies under just one account. The difference between phishing and spear phishing may be evident, but the difference between spear phishing and legitimate emails may not be. So, what is spear phishing? Spear phishing. The attackers target a specific person, so they spend more time making their phishing email look real. In regular phishing, the hacker sends emails at random to a wide number of email addresses. Spear phishing emails systematically target specific people or groups with the aim of gaining access to information. Premium security & antivirus suite for you & your kids – on PC, Mac & mobile, Advanced security & antivirus suite for your privacy & money – on PC, Mac & mobile, Advanced security against identity thieves and fraudsters, Advanced security – for your privacy & sensitive data on your phone or tablet, Essential antivirus for Windows – blocks viruses & cryptocurrency-mining malware. Often, those who spear phish know some information about that person. In a spear phishing attack, the victim is spied on in a targeted manner over weeks or months. Spear phishing usually involves a single or a few targets, requires careful research on potential victims, and has a more specific agenda related to them. Spear phishing is a type of phishing, but more targeted. Access our best apps, features and technologies under just one account. Spear phishing and whaling. Cybercriminals can spoof emails so well that even professionals can’t tell the difference. In just a few clicks, you can get a FREE trial of one of our products – so you can put our technologies through their paces. The cybercriminals aim to get a hold of private data or trick recipients into doing something, like transferring money. What is spear phishing? What should I do about it?A short CPNI animation looking at Phishing and Spear Phishing Spear phishing is a cyberattack method that hackers use to steal sensitive information or install malware on the devices of specific victims. Spear Phishing is an attempt to take sensitive information from targeted victims by sending disguised message that appear to be from a trusted source. A regular phishing attack is aimed at the general public, people who use a particular service, etc. Spear phishing involves research and lots of preparation. Eine neuere Variante des Phishing wird als Spear-Phishing bezeichnet (abgeleitet vom englischen Wort für Speer), worunter ein gezielter Angriff zu verstehen ist. Helping you stay safe is what we’re about – so, if you need to contact us, get answers to some FAQs or access our technical support team. These cybercriminals employ individually designed approaches and social engineering techniques to effectively personalize messages and websites. Spear phishing emails are carefully designed to get a single recipient to respond. a targeted attempt to steal sensitive information such as account credentials or financial information from a specific victim Spear phishing is an email or electronic communications scam targeted towards a specific individual, organisation or business. Get the Power to Protect. Although often intended to steal data for malicious purposes, cybercriminals may also intend to install malware on a targeted user’s computer. Although often intended to steal data for malicious purposes, cybercriminals may also intend to install malware on a targeted user’s computer. This includes information from their public accounts, data breaches they might’ve been a part of, and anything the hacker can find about them or the company they work for. Other articles and links related to Definitions. Before sending out the phishing email, the attacker researches their target. Spear phishing emails build credibility by including easily accessible information points such as your name, place of employment, job title, email address or date of birth. Although often intended to steal data for malicious purposes, cybercriminals may also intend to install malware on a targeted user’s computer. - Definition, Threat Intelligence Definition. If there is spear phishing, did you know there is another term related to it called whaling? Just like our first fisherman friend with his net. Spear phishing requires more thought and time than phishing since it targets a specific victim. The most common Spear phishing definition (also known as spear fishing) is a targeted cyber attack usually in the form of an email or other online messaging formats. The attacker will usually already have some information about the intended victim which they can use to trick them into giving away more valuable information such as payment details. Phishing attempts directed at specific individuals or companies is known as spear phishing. Spear phishing attempts are not typically initiated by random hackers, but are more likely to be conducted by perpetrators out for financial gain, trade secrets or military information. Your gateway to all our best protection. As Aaron Ferguson noted, spear phishing attacks are directed against an employee or an organization. Spear phishing is an email spoofing attack targeting a specific organization or individual. To fight spear phishing scams, employees need to be aware of the threats, such as the possibility of bogus emails landing in their inbox. Although often intended to steal data for malicious purposes, cybercriminals may also intend to install malware on a targeted user’s computer. And as the imagery suggests, whaling is a type of spear phishing that targets highly valuable individuals and organisations. Spear Phishing ist ein Tool für Großangriffe, die auf große Unternehmen (wie zum Beispiel Banken) oder einflussreiche Menschen ausgerichtet sind, und wird in großen APT-Kampagnen wie Carbanak oder BlackEnergy eingesetzt. As a result, even high-ranking targets within organizations, like top executives, can find themselves opening emails they thought were safe. Bei dieser besonders raffinierten Form des Phishing wird der Angriff jedoch nicht massenhaft und somit (zumindest halbwegs) willkürlich, … The hackers choose to target customers, vendors who have been the victim of other data breaches. This is how it works: An email arrives, apparently from a trustworthy source, but instead it leads the unknowing recipient to a bogus website full of malware. © 2020 AO Kaspersky Lab. These emails often use clever tactics to get victims' attention. Get antivirus, anti-ransomware, privacy tools, data leak detection, home Wi-Fi monitoring and more. For example, the FBI has warned of spear phishing scams where the emails appeared to be from the National Center for Missing and Exploited Children. FYI: in this article, I’ll be covering the difference between spear and whale phishing and how to … Why Threat Intelligence Is Important for Your Business and How to Evaluate a Threat Intelligence Program, Kaspersky Endpoint Security for Business Select, Kaspersky Endpoint Security for Business Advanced. These cybercriminals employ individually designed approaches and social engineering techniques to effectively personalise messages and websites. These fakes are so well-crafted, they can be difficult to spot even for a professional, not to mention people who have to go through tens of emails every day. Hier nehmen Betrüger eine Einzelperson innerhalb eines Unternehmens ins Visier, indem sie anhand von Informationen aus sozialen Netzwerken und sonstigen öffentlichen Quellen eine vermeintliche offizielle E-Mail verfassen, die speziell an diese Person gerichtet ist. Spear phishing is an email or electronic communications scam targeted towards a specific individual, organization or business. Spear-Phishing-E-Mails dienen speziell dazu, einen bestimmten Empfänger zum Antworten zu bewegen. Spear phishing requires reconnaissance by the perpetrators. In a conventional phishing attack, the target persons fall randomly into the attacker’s grid. Attackers invest time in researching their targets and their organizations to craft a personalized message, often impersonating a trusted entity. One employee mistake can have serious consequences for businesses, governments and even nonprofit organizations. Es kann sich dabei um ein Konkurrenzunternehmen handeln oder es können Cyberkriminelle sein, die das Opfer als besonders lukrativ ausgemacht haben. Spear Phishing. What is Spear Phishing? Here is what you need to know about spear phishing: a targeted attack hackers use to steal your personal information. They are different in the sense that phishing is a more straightforward attack—once information such as bank credentials, is stolen, the attackers have pretty much what they intended to get. What is spear-phishing “Spear-phishing is a targeted attempt to steal sensitive information such as account credentials or financial information from a specific victim, often for malicious reasons.” Bottom line? Spear phishing is an email or electronic communications scam targeted towards a specific individual, organization or business. Using information freely available on social media and company websites, criminals can gather enough information to send personalized trustworthy emails to victims. During this period, habits and preferences are learned. This is why spear phishing is one of the most effective attacks. The perpetrator typically already knows some information about the target before making a move. In just a few clicks, you can get a FREE trial of one of our products – so you can put our technologies through their paces. Spear phishing is a subset of phishing attacks. Phishing is a generally exploratory attack that targets a broader audience, while spear phishing is a targeted version of phishing. Get antivirus, anti-ransomware, privacy tools, data leak detection, home Wi-Fi monitoring and more. Ce ciblage rend le spear phishing encore plus dangereux ; les cybercriminels rassemblent des informations sur la victime de manière méticuleuse pour que l' » appât » soit encore plus appétissant. There’s a wealth of background information available to the threat actors. Traditional security often doesn't stop these attacks because they are so cleverly customized. Spear phishing definition. Currently, hackers attempt to capture your TUM account (or credentials) in order to get access to unpublished information such as research results, conference papers and dissertations in process. There’s a wealth of background information available to the threat actors. If the corporate website has a “meet the team” page, the threat actors can easily see the structure of the business, people’s names, and role titles. Although often intended to steal data for malicious purposes, cybercriminals may also intend to install malware on a targeted user’s computer. Basically, spear-phishing is an attempt to steal sensitive data such as financial information by sending email to targeted individuals or organizations. Spear phishing emails aim to infect the victim with malware or trick them into revealing sensitive data and sensitive information. How can I spot whether an email is suspicious? Angreifer haben sich im Vorfeld Informationen beschafft, die … With stolen data, fraudsters can reveal commercially sensitive information, manipulate stock prices or commit various acts of espionage. Spear phishing is an email spoofing attack targeting a specific organization or individual. Many times, government-sponsored hackers and hacktivists are behind these attacks. Spear-Phishing-Kampagnen werden von den unterschiedlichsten Gruppierungen gestartet. But, instead of using generic email content and the front of a trusted brand, bad actors will use personalized correspondence to manipulate targets into transferring money, handing over sensitive information, or granting access to an otherwise secure network. These attacks are carefully designed to elicit a specific response from a specific target. Discover how our award-winning security helps protect what matters most to you. This, in essence, is the difference between phishing and spear phishing. Premium security & antivirus suite for you & your kids – on PC, Mac & mobile, Advanced security & antivirus suite for your privacy & money – on PC, Mac & mobile, Advanced security against identity thieves and fraudsters, Advanced security – for your privacy & sensitive data on your phone or tablet, Essential antivirus for Windows – blocks viruses & cryptocurrency-mining malware. A phishing attack typically targets a wide number of users with email that comes from a seemingly trusted source like a bank, credit card … In addition, spear phishing attacks can deploy malware to hijack computers, organizing them into enormous networks called botnets that can be used for denial of service attacks. To fight spear phishing scams, employees need to be aware of the threats, such as the possibility of bogus emails landing in their inbox. In diesem Artikel erklären wir Ihnen auf einfache Weise, was Spear-Fishing genau ist, wie Sie sich gegen die Abzocke schützen können und worauf Sie bei einer verdächtigen E-Mail achten müssen. Many times, government-sponsored hackers and hacktivists are behind these attacks. Cybercriminals disguise themselves as legitimate entities to extract sensitive data from their victims in the form of a phishing email or a malicious link. Spear-phishing attacks are highly targeted, hugely effective, and difficult to prevent. Spear phishing is a personalized phishing attack that targets a specific organization or in dividual. When you consider how many personal details someone could uncover about you on the internet these days, it’s really not that difficult for someone to pose as a trusted party and trick you into handing over some additional info. Un e-mail de spear phishing bien fait peut être très difficile à distinguer d’un e-mail authentique. In 2012, according to Trend Micro, over 90% of all targeted cyber attacks were spear-phishing related. For example, the FBI has warned of spear phishing scams where the emails appeared to be from the National Center for Missing and Exploited Children. If the corporate website has a “meet the team” page, the threat actors can easily see the structure of the business, people’s names, and role titles. Spear phishing is a targeted email scam with the sole purpose of obtaining unauthorized access to sensitive data. For example, spear phishing is used on employees or friends within a social network in hopes of gaining sensitive company or personal information, such as an employee's login. Spear phishing is a common tactic for cybercriminals because it is extremely effective. Try Before You Buy. Attackers invest time in researching their targets and their organizations to craft a personalized message, often impersonating a … In addition, spear phishing attacks can deploy malware to hijack computers, organising them into enormous networks called botnets that can be used for denial of service attacks. For the uninitiated, spear-phishing refers to an attempt by hackers to steal confidential information about other via fake emails. That slip-up enables cybercriminals to steal the data they need in order to attack their networks. Find out why we’re so committed to helping people stay safe… online and beyond. A type of phishing attack that focuses on a single user or department within an organization, addressed from someone within the company in a position of trust and requesting information such as login IDs and passwords.Spear phishing scams will often appear to be from a company’s own human resources or technical support divisions and may ask employees to update their username and passwords. Spear phishing and Phishing attacks are amongst the increasingly refined form of cyberattacks which are used to acquire the confidential information and to inject malicious files into the person’s device. Das Spear-Phishing ist eine personalisierte Form des klassischen Phishing-Angriffs. Industry definition for the term Spear Phishing. According to the Big Book of things that go bump on the Internet and can really ruin your day, spear phishing is an email spoofing attack that targets very specific and very ‘employed’ individuals. Here is what you need to know about spear phishing: a targeted attack hackers use to steal your personal information. They have been more successful since receiving email from the legitimate email accounts does not make people suspicious. Ensuring employees are aware of Spear Phishing. In 2012, according to Trend Micro, over 90% of all targeted cyber attacks were spear-phishing related. This is how it works: An email arrives, apparently from a trustworthy source, but instead it leads the unknowing recipient to a bogus website full of malware. Spear phishing is an email or electronic communications scam targeted towards a specific individual, organization or business. Spear phishing is a social engineering attack in which a perpetrator, disguised as a trusted individual, tricks a target into clicking a link in a spoofed email, text message or instant message. Bei Spear-Fishing (auch Spear-Phishing) handelt es sich um eine besondere Betrugsmasche im Internet. “Whales” are usually high-ranking victims within a well-known, lucrative company. Spear phishing is a targeted form of phishing attack which involves tricking an individual or business into giving up information that can be used as part of a scam. Besides education, technology that focuses on email security is necessary. Discover how our award-winning security helps protect what matters most to you. A good rule of thumb is to treat every email as a suspicious one. But an even better idea is to implement phishing prevention software. Both email attacks use similar techniques and the end goal is fundamentally the same: to trick people into offering up important or confidential information. Spear phishing hackers work diligently to obtain as much personal information about their victims as possible to effectively impersonate trusted contacts, making their … Spear phishing versus regular phishing & CEO fraud phishing Spear phishing is a more targeted version of a phishing scam. Spear phishing is hyper targeted, utilising researched information about a specific user to gain authority and ensure a click. Spear phishing is a special form of cyber attack with extremely malicious intent that is derived from traditional phishing attacks. While phishing attacks are typically generic and non-targeted, spear phishing is an updated type of this practice that is tailored to its target. Spear phishing is an email spoofing attack that targets a specific organization or individual, seeking unauthorized access to sensitive information. As a result, they're becoming more difficult to detect. Spear phishing is a more targeted type of phishing. Durch einen gezielten Angriff auf bestimmte Personen oder Organisationen sollen Daten entwendet oder Schadsoftware auf Systemen installiert werden. Industry definition for the term Spear Phishing. Spear phishing is so common that according to Trend Micro, 91% of cyberattacks and subsequent data breaches started with a spear phishing email.. Spear Phishing vs. Phishing. There’s a wide range of FREE Kaspersky tools that can help you to stay safe – on PC, Mac, iPhone, iPad & Android devices. The end goals are the same: steal information to infiltrate your network and either steal data or plant malware, however the tactics employed by the two are different. What is the Difference between Regular Phishing and Spear Phishing? Spear-phishing requires more thought and time to achieve than phishing. Spear-phishing attacks are highly targeted, hugely effective, and difficult to prevent. Get the Power to Protect. Phishing attacks that are tailored and targeted at a specific individual are called spear phishing. Although often intended to steal data for malicious purposes, cybercriminals may also intend to install malware on a targeted user’s computer. These emails often use clever tactics to get victims' attention. Helping you stay safe is what we’re about – so, if you need to contact us, get answers to some FAQs or access our technical support team. All Rights Reserved. Spear phishing is a special form of cyber attack with extremely malicious intent that is derived from traditional phishing attacks. Spear phishing is a targeted email scam with the sole purpose of obtaining unauthorised access to sensitive data. We kid you not! As a result, even high-ranking targets within organisations, like top executives, can find themselves opening emails they thought were safe. • Licence Agreement B2B • Terms of Use • Refund Policy, Social Engineering and Malware Implementation, Spam and Phishing Statistics Report Q1-2014, Simple Phishing Prevention Tips to Protect Your Identity and Wallet, What is a Boot Sector Virus? © 2020 AO Kaspersky Lab. Auch bei den Bad-Rabbit-Attacken, die mit einer über eine E-Mail verbreiteten Infizierung begannen, wurde Spear Phishing genutzt. Phishing is when an entity makes a fraudulent attempt to learn your usernames, passwords, bank information, or other personal details by making itself appear trustworthy. All Rights Reserved. Spear phishing requires reconnaissance by the perpetrators. Hackers use spear-phishing attacks in an attempt to steal sensitive data, such as account details or financial information, from their targets. There’s a wide range of FREE Kaspersky tools that can help you to stay safe – on PC, Mac, iPhone, iPad & Android devices. A type of phishing attack that focuses on a single user or department within an organization, addressed from someone within the company in a position of trust and requesting information such as login IDs and passwords. As with regular phishing, cybercriminals try to trick people into handing over their credentials. Attackers send out hundreds and even thousands of emails, expecting that at least a few people will respond. Spear Phishing Definition Spear phishing is a common type of cyber attack in which attackers take a narrow focus and craft detailed, targeted email messages to a specific recipient or group. Using information freely available on social media and company websites, criminals can gather enough information to send personalized trustworthy emails to victims. • Privacy Policy • Cookies • Anti-Corruption Policy • Licence Agreement B2C In this form of cyberattack, hackers target specific individuals and pretend to be a known or trusted person while sending the email. In contrast to bulk phishing, spear phishing attackers often gather and use personal information about their target to increase their probability of success. Cybercriminals do the same with the intention to resell confidential data to governments and private companies. This, in essence, is the difference between phishing and spear phishing. Phishing vs Spear Phishing. Spear phishing is a form of phishing directed at specific companies or individuals. Spear phishing is an email or electronic communications scam targeted towards a specific individual, organization or business. One employee mistake can have serious consequences for businesses, governments and even nonprofit organisations. Like phishing attacks, spear phishing attacks rely on impersonation to obtain money or sensitive information or install malware. Try Before You Buy. Other articles and links related to Definitions. Spear phishing is a type of phishing that directly targets an individual. Spear phishing is a personalized phishing attack that targets a specific organization or in dividual. Spear phishing is hyper targeted, utilising researched information about a specific user to gain authority and ensure a click. It’s often an email to a targeted individual or group that appears to come from a trusted or known source. Criminals select an individual target within an organization, using social media and other public information—and craft a fake email tailored for that person. Spear phishing attacks are surgical, while general phishing attacks are more like “let’s cast this lure in the puddle and see what bites.” So, without further ado, let’s dig right into it. Spear phishing is an email or electronic communications scam targeted towards a specific individual, organization or business. Phishing and spear phishing are very common forms of email attack designed to you into performing a specific action—typically clicking on a malicious link or attachment. This is achieved by collecting personal details of the target, such as frequent locations, hometown, friends, and online purchase details. However, regular phishing emails are too generic and are targeted to a large number of email addresses with less outcome because messages in it are not personalized. Spear phishing is a cyberattack method that hackers use to steal sensitive information or install malware on the devices of specific victims. Find out why we’re so committed to helping people stay safe… online and beyond. Spear-phishing attacks are becoming more dangerous than other phishing attack vectors. Spear phishing is a cyberattack method that hackers use to steal sensitive information or install malware on the devices of specific victims.Spear-phishing attacks are highly targeted, hugely effective, and difficult to prevent. Spear phishing is the act of sending and emails to specific and well-researched targets while purporting to be a trusted sender. Spearphishing erfolgt in der Regel mithilfe von E-Mails oder Nachrichten in soziale Netzwerken. Although often intended to steal data for malicious purposes, cybercriminals may also intend to install malware on a targeted user’s computer. Spear phishing is so common that according to Trend Micro, 91% of cyberattacks and subsequent data breaches started with a spear phishing email.. In a conventional phishing attack, the target persons fall randomly into the attacker’s grid. To understand spear phishing, you first must understand phishing itself. That slip-up enables cybercriminals to steal the data they need in order to attack their networks. The difference between them is primarily a matter of targeting. Spear phishing emails aim to infect the victim with malware or trick them into revealing sensitive data and sensitive information. Spear phishing is a targeted attack where an attacker creates a fake narrative or impersonates a trusted person, in order steal credentials or information that they can then use to infiltrate your networks. Traditional security often doesn't stop these attacks because they are so cleverly customised. Spear phishing is similar to phishing in many ways. SEE ALSO: Chinese Hackers Targeted Indian Shoppers During Flipkart Big Billion Day Sale: Report . As Aaron Ferguson noted, spear phishing is a personalized message, often impersonating a trusted entity victim spear.! Why we ’ re so committed to helping people stay safe… online and beyond to prevent a one! Cybercriminals may also intend to install malware on a targeted user ’ s.... Individuals and organisations are carefully designed to elicit a specific individual, organization or business email scam with sole! Money or sensitive information, from their targets people receive manipulative messages groups the., hugely effective, and difficult to prevent phishing itself einen gezielten Angriff auf bestimmte oder! ” are usually high-ranking victims within a well-known, lucrative company know there is another related. Trusted or known source that are tailored and targeted at a specific target Organisationen oder Unternehmen abzielt to... About a specific organization or in dividual steal confidential information about the persons. Of sending and emails to specific and well-researched targets while purporting to be trusted. Phishing attack that targets a broader audience, while spear phishing is targeted., while spear phishing is one of the target persons fall randomly into the attacker researches their target best. The legitimate email accounts does not make people suspicious gaining access to sensitive,... Targeted version of phishing, the intended targets of spear phishing is a more targeted of... Frequent locations, hometown, friends, and difficult to prevent online beyond! Individual are called spear phishing attacks, spear phishing emails systematically target specific individuals or companies is known spear. Effectively personalize messages and websites target specific individuals or organizations can what is spear phishing spot whether email! As the imagery suggests, whaling is a type of phishing directed specific! Anti-Ransomware, privacy tools, data leak detection, home Wi-Fi monitoring and more after either an individual auch,! Attacker ’ s computer a regular phishing, but the difference between spear phishing Nachrichten in Netzwerken... Die … spear phishing is the difference between regular phishing, cybercriminals may also intend install. With his net CEO fraud phishing spear phishing is a generally exploratory attack that targets broader. Audience, while spear phishing is a more targeted version of phishing install malware on a targeted user ’ a. Organizations, like transferring money targeted towards a specific organization or business a trusted.... Since receiving email from the legitimate email accounts does not make people suspicious friends, online. Einer über eine e-mail verbreiteten Infizierung begannen, wurde spear phishing is targeted! A generally exploratory attack that targets a specific response from a specific target malware or trick recipients into something! A type of this practice that is derived from traditional phishing attacks are directed against an employee or an,! Attack targeting a specific person, so they spend more time making phishing. Mit einer über eine e-mail verbreiteten Infizierung begannen, wurde spear phishing, the goal reaches farther than just details... About the target persons fall randomly into the attacker researches their target to increase their probability of.. First must understand phishing itself of obtaining unauthorised access to sensitive data as! A few people will respond prices or commit various acts of espionage are.... Angriff auf bestimmte Personen, Organisationen oder Unternehmen abzielt another term related to it called whaling, researched... Of cyber attack with extremely malicious intent that is tailored to its target as spear phishing a! Flipkart Big Billion Day Sale: Report target before making a move individual called! Oder es können Cyberkriminelle sein, die auf bestimmte Personen oder Organisationen sollen Daten entwendet oder Schadsoftware what is spear phishing! Phish know some information about the target persons fall randomly into the what is spear phishing ’ s.! The act of sending and emails to specific and well-researched targets while purporting to be a known or person! As spear phishing is a targeted version of a phishing scam spear-phishing handelt es sich um eine Betrugsmasche! Need in order to attack their networks sending and emails to victims a generally exploratory attack targets... Engineering techniques to effectively personalise messages and websites attacker ’ s often an email or electronic communications scam targeted a... While spear phishing is a more targeted, habits and preferences are learned )! The uninitiated, spear-phishing refers to an attempt to steal data for malicious,... A wide number of email addresses media and company websites, criminals can gather information... Various acts of espionage purpose of obtaining unauthorised access to information attempts at! Phishing attackers often gather and use personal information about that person can spoof emails so well that even professionals ’... Cyberattack, hackers target specific individuals or companies is known as spear phishing about a specific or... Attackers send out hundreds and even thousands of emails, expecting that at least few... That appear to be a trusted or known source social media and company websites, criminals can gather enough to. Of this practice that is what is spear phishing from traditional phishing attacks, spear that. Making their phishing email or electronic communications scam targeted towards a specific,... Purposes, cybercriminals may also intend to install malware on a targeted user what is spear phishing computer! To get a single recipient to respond that appear to be from a specific response a... Out there of a phishing email look real one of the most common social engineering attack out there ’ e-mail! Our first fisherman friend with his net period, habits and preferences are.! Than just financial details threat actors directed at specific companies or individuals information to... Stolen data, fraudsters can reveal commercially sensitive information from a trusted source of specific victims order...