🔒 End-of-Session Quiz – Phishing & BEC
1. What is the main goal of a phishing email?
A) To make you laugh
B) To steal information or money
C) To update company policies
2. Business Email Compromise (BEC) usually involves:
A) Sending funny memes to employees
B) Impersonating an executive or vendor to trick staff
C) Hacking your Netflix account
3. Which of these is a red flag of a phishing email?
A) Urgent request for payment
B) Email from HR about leave balance
C) Birthday invitation from a colleague
4. What should you do if you receive a suspicious email?
A) Delete it silently
B) Reply asking if it’s real
C) Report it to IT/security
5. True or False: If the email comes from our CEO’s real email address, it can never be a phishing attempt.
True
False
6. Which of these is an example of spear phishing?
A) A mass email sent to 10,000 people
B) A fake email sent specifically to YOU with your name and role
C) A pop-up ad for sunglasses
7. What is “whaling”?
A) A scam targeting senior executives
B) A type of spam folder
C) A new IT security tool
8. If you accidentally clicked a phishing link, what’s your FIRST action?
A) Pretend nothing happened
B) Contact IT immediately
C) Restart your laptop and hope for the best
9. Which of these is the safest password?
A) Tiara123
B) Welcome2025
C) 7r!aR@!Group#2025
10. Fill in the blank:
When in doubt, __________.
Submit