You receive an email from "security@m1crosoft-support.com" saying your account is locked and asking you to click a link to verify your identity. What should you do?
1. Hover over the link, verify the sender, and report the email if suspicious
2. Forward it to your colleagues to check
3. Click the link and follow the instructions
4. Reply asking if the email is legitimate
4 -
5 -
You get a text message claiming to be from your bank: “Your account has been blocked. Click here to restore access: [bit.ly/BankHelp]”. What is the most secure response?
1. Call your bank using the official number from their website
2. Click the link immediately
3. Ignore the message completely
4. Text back asking for verification
6 -
7 -
You’re entering the office, and someone behind you, not wearing a badge, asks to follow you in saying, “I forgot my access card.”
What should you do?
1. Hold the door but alert someone afterward
2. Politely refuse and direct them to reception/security
3. Ask them who they are and continue walking
4. Let them in—it’s probably a new employee
8 -
9 -
Your “CFO” calls via Zoom and asks for urgent fund transfer details. The video quality is low and the voice sounds slightly off, but convincing.
What’s the safest next step?
1. End the call and verify the request through another official channel
2. Ask for the CFO’s approval in writing and send it
3. Continue the call and try to test the person with personal questions
4. Transfer the funds to avoid delay
10 -
11 -
You use the same password for your email, your work account, and your social media. One day you get notified that your email was accessed from another country.
What is the most important step to take next?
1. Change the password for email only
2. Change all your passwords and enable MFA/passkeys on all accounts