Back to Phishing and Social Engineering
11+fraud-fighter-pro

Phishing — fake emails/sites

Understand why phishing sophistication: visual copying is near-perfect.

In this lesson

Phishing — fake emails/sites is part of Phishing and Social Engineering. This preview shows how fraud-fighter-pro connects to everyday family decisions such as earning, saving, spending choices, goals, approvals, or parent-guided money conversations inside Progress Penguin.

Think about this money choice

Imagine this situation: You receive an email from 'gtbank-secure.ng' with your name and account ending, asking you to click a link to 'verify unusual activity.

How it works

Phishing sophistication: visual copying is near-perfect. The URL is the most reliable indicator — fraudsters cannot use 'gtbank.com' because GTBank owns that domain. They use lookalikes: hyphens (gtbank-secure.com), subdomains (gtbank.malicious.com), or character substitutions (gtb4nk.com). The check: before entering any credentials, verify the exact URL in the address bar.

Apply it to a real decision

Real-life money moment: You enter your internet banking password on what you later realise was a phishing site. You have 10 minutes before you expect the attacker to use your credentials. Design your immediate response. — Post-phishing response race: you have minutes before the attacker uses credentials. Priority order: change password immediately (invalidates stolen credentials), freeze account (stops any transactions even if credentials haven't been changed yet), enable alerts (real-time monitoring), review recent transactions. Each step adds a defensive layer. Speed is everything — credential theft with a 10-minute head start can be defeated by a faster response.

Activity preview

Apply the idea

Use the lesson to complete this short practice activity.

Quiz preview

Phishing tricks you into:

Entering credentials on fake sites
Buying products as a general rule
Saving money in this situation
Helping strangers as a general rule

You receive an email from 'gtbank-secure.ng' with your name and account ending, asking you to click a link to 'verify unusual activity.' What red flags are present?

None — it mentions your real account details
Only the link is suspicious — the email itself is legitimate
The greeting with your name confirms it is from GTBank
The sending domain 'gtbank-secure.ng' is NOT gtbank.com.