Definition of Phishing in Cybersecurity

Answer Correct answer: D — sending fraudulent communications that appear to come from a reputable source

What is the definition of phishing?

  1. malicious email spoofing attack that targets a specific organization or individual
  2. impersonation of an authorized website to deceive users into entering their credentials
  3. any kind of unwanted, unsolicited digital communication that gets sent out in bulk
  4. sending fraudulent communications that appear to come from a reputable source Correct Answer

Community Votes

D
100%

100% of anonymous learners picked answer D. Votes are pick records left by other test-takers — they are not the verified answer.

Community Insight

The exam tests the distinction between general bulk spam and targeted fraudulent impersonation; the trap is confusing phishing with spoofing or spear phishing.

This question tests the precise definition of phishing versus related social engineering attacks. The correct answer identifies phishing as sending fraudulent communications appearing to come from a reputable source.

Option A is incorrect because it describes spear phishing (targeted) or email spoofing specifically, whereas phishing is broader. Option B describes credential harvesting via fake sites (a technique often used in phishing but not the definition itself). Option C defines spam.

Community Discussion (5 comments)

ITVI 👍 1 Selected: D
Link says it all: https://www.cisco.com/c/en/us/products/security/email-security/what-is-phishing.html Phishing is the practice of sending fraudulent communications that appear to come from a legitimate and reputable source, usually through email and text messaging. The attacker's goal is to steal money, gain access to sensitive data and login information, or to install malware on the victim's device. Phishing is a dangerous, damaging, and an increasingly common type of cyberattack.
NullNull88 👍 1 Selected: D
Phishing is NOT e-mail spoofing attack (A). Answer D
dfb0b7d 👍 1 Selected: D
https://www.cisco.com/c/en/us/products/security/email-security/what-is-phishing.html
Premium_Pils 👍 2 Selected: D
https://www.cisco.com/c/en/us/products/security/email-security/what-is-phishing.html
klu16 👍 1 Selected: D
It's D.

Comments & Corrections

No comments yet — spotted an error or have a note? Share it below.

Log in to comment, report an error, or add a note about this question.

Submitted for moderation before publishing. Keep it helpful and respectful.

Expert Analysis

Why the Answer Is Correct

Phishing is broadly defined as the practice of sending fraudulent communications that appear to come from a legitimate and reputable source. The primary goal is to steal sensitive data, gain access to accounts, or install malware by tricking the recipient. Option D captures this essence perfectly by focusing on the appearance of legitimacy from a reputable source.

Why the Other Options Are Wrong

Option A describes spear phishing, which targets specific individuals or organizations, or simply email spoofing. Option B describes a specific tactic (credential theft via fake websites) often associated with phishing but is too narrow to be the general definition. Option C defines spam (unsolicited bulk communication), which lacks the element of deception/impersonation central to phishing.

Community Comment Notes

Community consensus strongly supports option D. Users frequently cite Cisco's documentation, noting that phishing involves fraudulent communications appearing from a legitimate source. One user clarified that option A is incorrect because phishing is not limited to email spoofing attacks against specific targets, reinforcing that D is the broader, correct definition.

Official Reference

Exam Strategy

When defining security terms, look for the most comprehensive description that covers the core mechanism (deception/impersonation) rather than specific examples or narrower variants like spear phishing or spam.

Frequently Asked Questions

Is phishing the same as spam?

No. Spam is unsolicited bulk communication (Option C). Phishing involves fraud and impersonation to deceive users (Option D).

How does phishing differ from spear phishing?

Phishing is broad and targets anyone (Option D). Spear phishing targets specific individuals or organizations (Option A).

Related Analysis

← Back to 350-701 Study Guide