Spear Phishing

Traditional phishing = steal info from individuals

Targeted phishing = access to a company's systems

Targeted at a specific company, government agency, organization, or group

Phisher gets an e-mail address of an administrator/colleague

Spoofed e-mail asks employees to log on to a corporate network

A key-logger application records passwords

Phisher can access corporate information