DADavisDesign

🚨 Immediate Response Protocol (User Level)

If you suspect you have received a phishing email or clicked a malicious link, follow these steps immediately. Do not ignore it.

01

STOP & DISCONNECT

If you clicked a link or downloaded a file, disconnect your device from the Wi-Fi or network immediately to prevent malware spread.

02

DO NOT INTERACT

Do not reply to the sender. Do not forward the email to colleagues (unless reporting). Do not try to "test" the link.

03

REPORT IT

Forward the email as an attachment to your security team or use the "Report Phishing" button in your email client.

Contact Security Team

πŸ“˜ Tier 1 Analyst: Detailed Runbooks

Select a playbook below to open the detailed investigation procedures in a modal window.

🚩 Common Red Flags (The SLAM Method)

Analyze the email using the SLAM method to identify potential threats.

πŸ‘οΈ Analyzed Examples

Below are simulated phishing attempts. Hover over the highlighted areas to see why they are suspicious.

Example 1: The "CEO" Request (Urgency)

From: CEO Name <[CEO@example.com]>
Subject: URGENT: Wire Transfer Needed
To: You

Hi,

I am in a meeting and can't talk right now. I need you to process a wire transfer immediately for a new vendor.

It needs to go out in the next 30 minutes or we lose the deal. Do not mention this to anyone yet, I will explain later.

Sent from my iPad

Example 2: The "Password Expiry" (Credential Harvesting)

From: CEO Name <ITSupport@generic.com>
Subject: Action Required: Password Expires in 24 Hours

Dear User,

Your password is set to expire today. You must retain your access by validating your credentials below.

Failure to do so will result in permanent account lockout.

Regards,
System Administrator

Example 3: The Fake Subscription Renewal

From: Geek Squad Billing <[email09843@geeksquad.com]>
Subject: INVOICE #9982: PAYMENT OF $499.99 SUCCESSFUL

Hello Customer,

Thank you for your order. We have successfully charged your account $499.99 for your annual antivirus protection plan.

If you did not authorize this charge, you must call our fraud department immediately to cancel.

Call Now: +1 (888) 555-0192

Example 4: The "Shared Document"

From: Human Resources <hr-updates@company-benefits-update.com>
Subject: Important: Review Updated Q3 Policy

Team,

HR has shared a new file with you: "Q3_Bonus_Structure_Updates.pdf"

Click here to Open Document

Please review and sign by end of day Friday.

Welcome Back

Sign in to your account

or
Don't have an account? Sign Up

Create Account

Join DADavisDesigns Cybersecurity Support

or
Already have an account? Sign In