Which type of phishing attack is specifically targeted at senior leadership within an organization?

Study for the CISSP Domain 1 exam. Access multiple choice questions with hints and detailed explanations. Prepare effectively for your certification!

The correct choice, whale phishing, refers specifically to a type of phishing attack that targets high-profile individuals within an organization, such as senior leadership or executives. This targeted approach is designed to exploit the authority and trust that these individuals hold within a company, making them more likely to fall for a deceptive email or message that may request sensitive information or prompt the transfer of funds.

Whale phishing often employs personalized tactics, possibly leveraging information about the target’s role, interests, or recent activities within the organization to create credible and convincing phishing attempts. The goal is to capitalize on the perceived reliability and importance of the communication, which can lead to significant data breaches or financial losses if successful.

In contrast, other types of phishing attacks, such as spear phishing, refer to targeted attacks but can apply to a broader audience beyond just executives. Vishing involves voice calls rather than emails, while bulk phishing represents the generic approach that targets a large number of individuals without any specific targeting, making them less effective for high-value targets.

Subscribe

Get the latest from Examzify

You can unsubscribe at any time. Read our privacy policy