The Short Version
Phishing (pronounced like “fishing”) is when a scammer sends a fake email, text, or message that looks like it’s from a trusted company (like your bank, Amazon, or Netflix). Their goal is to “hook” you into clicking a link and giving them your password or credit card number.
The Everyday Analogy
Imagine someone knocking on your front door wearing a fake UPS uniform, holding a clipboard. They tell you there is a package waiting for you, but you need to pay a $2 delivery fee and provide your credit card right there on the porch.
Phishing is exactly the same thing, just done digitally through your inbox.
How to Spot a Phishing Attempt
- The “Urgency” Trick: The message almost always claims something is wrong and you must act immediately (“Your account will be suspended in 24 hours!”).
- The Fake Link: If you hover your mouse over the link (without clicking it), the website address shown at the bottom of your screen looks wrong (e.g.,
amazon-support-help-123.cominstead ofamazon.com). - Generic Greetings: Instead of using your name, it says “Dear Customer” or “Dear Member.”
The Golden Rule
If you ever receive an email telling you to log in to resolve an issue, do not click the link in the email. Instead, open your web browser, type in the website address yourself (like paypal.com), and log in there to see if the alert is real.
Other Dictionary Terms
Botnet
A network of infected computers controlled by a single attacker, often without the owners knowing.
Dictionary TermThe Dark Web
A part of the internet that isn't indexed by search engines and requires specific software, configurations, or authorization to access.
Dictionary TermDDoS Attack
A malicious attempt to disrupt the normal traffic of a targeted server by overwhelming the target with a flood of internet traffic.