Phishing

What is Phishing?

Phishing

Phishing is a social-engineering attack in which criminals impersonate a trusted source — usually by email — to trick people into revealing credentials, sending money, or installing malware.

Definition

Phishing explained

Phishing targets people rather than technology. A convincing email appears to come from a bank, a vendor, Microsoft, or a colleague, and pressures the recipient to act: click a link to a fake login page, open a malicious attachment, or approve a payment. Because it exploits trust and urgency, phishing bypasses many purely technical defences.

Phishing comes in increasingly targeted forms — spear phishing aimed at specific individuals, and business email compromise impersonating executives or suppliers. It's the single most common starting point for serious breaches, including ransomware, because one clicked link or entered password can hand attackers the keys.

Why it matters

Why Phishing matters for your business

The overwhelming majority of cyberattacks begin with phishing, and it only takes one employee, on one busy day, to click. Stolen credentials lead to account takeover, wire fraud, data theft, and ransomware — and the financial and reputational damage can be severe.

Because phishing exploits human psychology, defending against it requires more than spam filters. It takes layered email security, strong authentication that limits the damage of stolen passwords, and ongoing awareness so people can spot and report attempts. Each layer reduces the chance that one mistake becomes a breach.

How Scalogic helps

Scalogic protects your business from phishing

Scalogic blocks phishing with layered defences. We deploy advanced email security through our partner Proofpoint to filter malicious messages before they reach inboxes, enforce MFA so a stolen password alone can't grant access, and configure email-authentication controls like DMARC to stop impersonation.

We back that with 24/7 SOC monitoring to catch the signs of a successful phish — like a suspicious login — and respond fast. Together these layers dramatically reduce the chance that a single click turns into a full breach.

Cybersecurity & SOC →

FAQ

Frequently asked questions

What's the difference between phishing and spear phishing?

Phishing is broad and untargeted; spear phishing is tailored to a specific person or organization using personal details, making it more convincing and harder to spot.

Can email filters stop all phishing?

No filter catches everything, which is why Scalogic layers email security with MFA, email authentication, and monitoring — so a message that slips through still can't easily cause a breach.

What should staff do if they spot a phishing email?

Report it without clicking. Scalogic helps organizations set up easy reporting and monitoring so suspicious messages are caught and investigated.

Keep learning

Related terms

Put Phishing to work for your business

Stop phishing before it reaches your team with layered email security from Scalogic.