Skip to main content

SCAM OF THE WEEK: Beware! Bogus Performance Reviews Used as Phishbait


Posted on Friday, October 25, 2019 in Privacy & Security

Be warned. The bad guys are using fake job performance reviews as phishing bait so they can trick you into giving up your username and password.

Here's how it works: First, the scammers send you an email that appears to come from your Human Resources department. The email contains a link to a fake website where you're instructed to log in so you can "receive the information about your performance review".  If you enter your login credentials here, the attackers will have access to your account and your entire organization could be compromised.

Always remember: Never click on a link you weren't expecting, even if it appears to be from an internal team or someone you know. It's best to pick up the phone and verify that the email is legitimate before putting yourself and your company at risk.

Stop, Look, and Think. Don't be fooled.
The KnowBe4 Security Team

Back to Top