Smishing (a blend of “SMS” + “phishing”) is a type of phishing attack carried out through text messages.Attackers send SMS messages that impersonate banks, delivery services, government agencies, tech companies, or other trusted entities.
The goal is to trick you into:
- Clicking a malicious link
- Revealing personal information (passwords, account numbers, one-time codes, Social Security numbers, etc.)
- Downloading malware
- Calling a fake number
- “Your package is delayed. Click here to reschedule delivery.”
- “Suspicious activity detected on your bank account. Verify now: [link]”
- “You’ve won a prize / tax refund. Claim it here.”
- Messages claiming to be from Apple, Google, Amazon, or your phone carrier asking you to “confirm” something urgently
- Phishing → email
- Smishing → text/SMS
- Vishing → voice calls
- Be skeptical of any unexpected text that asks you to click a link or provide sensitive info.
- Never click links in unsolicited messages. Go directly to the official website or app instead.
- Check the sender’s number carefully (spoofed numbers are common).
- Enable two-factor authentication that doesn’t rely solely on SMS when possible.
- Report suspicious texts to your carrier (in the U.S., forward them to 7726) and delete them.
- Keep your phone’s OS and apps updated.
No comments:
Post a Comment