Cyber Whaling is Different than Common Phishing Attacks
Phishing can be broken up into three categories.
- Phishing – Emails with malicious links, attachments and social engineering ploys sent out en-masse to hundreds of thousands of email boxes
- Spear Phishing – Targeted emails with malicious links, attachments and social engineering ploys sent out to one individual to gain a specific result.
- Whale Phishing (Cyber Whaling) – Top-level company execs or managers with admin access are targeted individually (usually via email) to access their system credentials and company data.
Is Cyber Whaling Damaging for a Company?
Yes. Anytime a cybercriminal has access to a high-level manager’s credentials or an executive’s laptop,
it’s time to worry. Some of the damage that has been done via Cyber Whaling attack is:
- Deployment of ransomware and demand for money
- Theft of proprietary data
- Theft and criminal use of financial information (company and clients)
- Theft of personal data and use of such for embarrassment/blackmail
- Damage to company IT systems using stolen admin credentials