A look at how hackers create spear phishing emails

Spear phishing emails are highly effective and have been the cause of many successful hacking attempts. Unlike a regular phishing email that could be sent to thousands or millions of recipients, a spear phishing email is created to target just one victim. And if that victim falls for the bait, there is a good chance that they will turn over valuable information including network user accounts and passwords or confidential information such as bank account login credentials.

In an interview over at Business Insider, Ray Boisvert a professional ethical hacker for hire tells how he creates spear phishing emails.

He would scour LinkedIn looking for the least cybersavvy (company) employees, such as those who work in nontechnical areas and new hires unlikely to recognize an atypical email.

The infiltrator will then try to guess the employee’s email address by learning the format of a typical address for that company (e.g., [email protected]) and sending out messages repeatedly until they stop bouncing back.

After attaining the victim’s email address, the hacker looks to social media to learn as much as possible about his target’s professional background, friends, and general interests.

In this way, he can customize the phishing email as much as possible — even posing as one of the victim’s closest friends (profile picture included) — to make it look familiar and increase the odds that the target will trust it.

Clearly social media is a treasure trove of valuable information that can be used to help create spear phishing emails. Make sure your employees, customers, family and friends understand how these email are created and targeted at individuals. Steps to help prevent phishing scams include:

  • Minimize the amount of information shared on LinkedIn, Facebook, Twitter and other social media sites
  • Raise awareness of what phishing emails are and how to spot them
  • Instill some fear or concern into employees, family and friends so they will at least question the validity of emails
badge w light burst white (1)
Exclusively for Our MSP Partners

Now Available: Gen AI Certification From BSN

Lead Strategic AI Conversations with Confidence

Breach Secure Now’s Generative AI Certification helps MSPs simplify the AI conversation, enabling clients to unlock the value of gen AI for their business, build trust, and drive growth – positioning you as a leader in the AI space.

More on blogs

From Prompt to Profit: Why MSPs Must Lead the AI Adoption Journey

AI is transforming the business landscape faster than any technology before it—yet most SMBs are adopting it unsafely, unknowingly, and without guidance. In From Prompt

AI Starts at Home: Why MSPs Need Internal Adoption Before Client Services

MSPs want to offer AI services, but most don’t know where to start. The answer is inside your own team. Before guiding clients, you need
Take the First Step

Experience Training That Makes a Difference

during the demo you’ll:

Take the First Step

Experience Training That Makes a Difference

During the demo you’ll:
monk4d slot dana slot gacor SBCTOTO DAFTAR toto slot deposit 1000 joker123 pucuk138 idrtoto daftar hoki99 toto toto slot pulsa toto togel slot88 gacor slot thailand situs toto toto situs toto toto 8KUDA4D 8KUDA4D situs toto situs toto situs toto toto toto toto situs toto toto situs toto slot server Thailand xyz388 city4d petir135 daftar pgs4d slot ltdtoto gbk99 bwo99 HK4D dana100 NIX77 slot maxwin kepo66 monk4d XIN77 pajaktoto alam4d Streameast pajaktoto login dolantogel pajaktoto login toto toto situs toto toto togel toto https://www.slimfluorescent.com/specifications.php ollo4d login ollo4d login toto slot gacor situs toto situs toto ilmutoto situs toto hk4d naruto88 naruto88 leon188 https://linktr.ee/miminbet99 toto macau batmantoto toto togel toto toto besttogel birototo slot gacor toto Situs Slot QRIS Terpercaya toto toto toto toto toto traveltoto naruto88 babeh188 nicetogel justogel situs toto situs toto lexus234 https://jamet.uniss.ac.id/ Toto Slot toto slot benteng786 BENTENG786 https://acessoainformacao.ufop.br/servidores/ toto situs toto QQgobet dor123 Streameast slot toto rp888 topanbos88 https://dr-mobile.org/disclaimer/ https://fecoms.com/contact-us/ https://www.shoescompany.com/fr/aide Mantraslot toto pedofil pajaktoto https://www.shoescompany.com/es/contact bwo99 https://fateccampinas.edu.br/site/curso_ads/ Streameast jebol togel miminbet toto toto slot gacor toto slot bwo303 https://www.shoescompany.com/es/agencia Demo Slot Gratis bandar togel bandar togel https://dai.it/contatti/ PEWE4D pewe4d naga91 login toto situs toto TOTO TOGEL toto monk4d