{"id":1398,"date":"2026-07-29T09:56:17","date_gmt":"2026-07-29T09:56:17","guid":{"rendered":"https:\/\/kiberklaszter.hu\/?p=1398"},"modified":"2026-07-29T09:56:17","modified_gmt":"2026-07-29T09:56:17","slug":"harom-adathalasz-trukk-amivel-a-leggyakrabban-probalnak-atverni","status":"publish","type":"post","link":"https:\/\/kiberklaszter.hu\/en\/2026\/07\/29\/harom-adathalasz-trukk-amivel-a-leggyakrabban-probalnak-atverni\/","title":{"rendered":"Three phishing tricks that are most often used to scam you"},"content":{"rendered":"<p><strong><span class=\"TextRun SCXW39075670 BCX8\" lang=\"HU-HU\" xml:lang=\"HU-HU\" data-contrast=\"auto\"><span class=\"NormalTextRun SCXW39075670 BCX8\">Phishing (<\/span><span class=\"NormalTextRun SpellingErrorV2Themed SCXW39075670 BCX8\">phishing<\/span><span class=\"NormalTextRun SCXW39075670 BCX8\">) for years\u00a0<\/span><span class=\"NormalTextRun SpellingErrorV2Themed SCXW39075670 BCX8\">cybercrime<\/span><span class=\"NormalTextRun SCXW39075670 BCX8\">\u00a0is the most common method because it targets weaknesses in human attention, not systems. Attackers use the names of well-known brands and service providers, using an urgent tone, to try to get the recipient to click without thinking \u2013 and enter their password or bank card details on a fake page. Below are the three most common forms.<\/span><\/span><span class=\"EOP Selected SCXW39075670 BCX8\" data-ccp-props=\"{}\">\u00a0<\/span><\/strong><\/p>\n<p><span data-contrast=\"auto\">What most phishing messages have in common is an artificial sense of urgency: the message suggests that you must act immediately or you will lose money, lose access, or miss out on something. This pressure intentionally short-circuits the process of deliberation \u2013 it targets the exact moment when someone quickly, mechanically, clicks on a link without looking at the sender\u2019s real address or URL. The following three schemes regularly appear in almost every mailbox in Hungary.<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<p><b><span data-contrast=\"auto\">Courier emails<\/span><\/b><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<p><span data-contrast=\"auto\">Attackers send messages on behalf of well-known parcel delivery services, stating that the package was not delivered successfully or that a symbolic small amount \u2013 a few hundred forints \u2013 must be paid for the delivery. The essence of the trick is precisely this small amount: most people do not suspect a fee of a few hundred forints, while the bank card details provided by clicking on the link are sent to the attackers, who can then charge the card without any restrictions. It is worth considering it as a rule that we only pay for packages in the official application or at the courier&#039;s location, never via a link received in an email.<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<p><b><span data-contrast=\"auto\">Bank notifications<\/span><\/b><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<p><span data-contrast=\"auto\">These messages claim that the account has been blocked for security reasons, a suspicious transaction has been detected, or that customer information needs to be updated urgently. The goal is to panic the recipient and click on the provided link to enter their login details on a deceptively similar banking interface \u2013 which the attackers use to log in to the real system in real time. As a general rule, banks never ask for passwords, PINs, or one-time codes via email or phone; if in doubt, the safest course of action is to visit the bank\u2019s official app or officially known phone number directly, not the contact information provided in the email.<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<p><b><span data-contrast=\"auto\">Microsoft 365 or Google account alerts<\/span><\/b><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<p><span data-contrast=\"auto\">The user receives a message stating that their password has expired, their mailbox is full, or that a login from an unusual location has been detected. The link provided leads to a login page that is visually almost identical to the original, where the entered username and password are sent directly to the attackers. Since these accounts are often the key to corporate mail, documents, and other services, the gained access can then be extended to other systems in the company. Two pillars of defense are enabling two-factor authentication (MFA) and getting in the habit of always checking the domain name that appears in the browser address bar before logging in.<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<p><b><span data-contrast=\"auto\">What can the company do to prepare its employees?<\/span><\/b><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<p><span data-contrast=\"auto\">The above schemes are easily recognizable on their own, but real protection comes from regularity: periodic, practical training \u2013 even with simulated phishing campaigns \u2013, a clear internal procedure for reporting suspicious messages, and a corporate culture in which a colleague who admits to a wrong click is greeted with help, not shame.<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<p><span data-contrast=\"auto\">The Hungarian Cybersecurity Cluster is working with its partners to ensure that domestic businesses are prepared to face these challenges - through research collaborations, professional programs and training.<\/span><\/p>","protected":false},"excerpt":{"rendered":"<p>Az adathal\u00e1szat (phishing) \u00e9vek \u00f3ta a\u00a0kiberb\u0171n\u00f6z\u00e9s\u00a0legelterjedtebb m\u00f3dszere, mert nem a rendszerek, hanem az emberi figyelem gyeng\u00e9it c\u00e9lozza. A t\u00e1mad\u00f3k ismert m\u00e1rk\u00e1k \u00e9s szolg\u00e1ltat\u00f3k nev\u00e9t haszn\u00e1lva, s\u00fcrget\u0151 hangnemben pr\u00f3b\u00e1lj\u00e1k r\u00e1venni a c\u00edmzettet, hogy gondolkod\u00e1s n\u00e9lk\u00fcl kattintson \u2013 \u00e9s adja meg jelszav\u00e1t vagy bankk\u00e1rtyaadatait egy hamis oldalon. Az al\u00e1bbiakban a h\u00e1rom leggyakoribb form\u00e1t mutatjuk be.\u00a0 Ami a [&hellip;]<\/p>","protected":false},"author":5,"featured_media":1401,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_seopress_robots_primary_cat":"none","_seopress_titles_title":"","_seopress_titles_desc":"","_seopress_robots_index":"","footnotes":""},"categories":[1],"tags":[],"class_list":["post-1398","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-uncategorized"],"_links":{"self":[{"href":"https:\/\/kiberklaszter.hu\/en\/wp-json\/wp\/v2\/posts\/1398","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/kiberklaszter.hu\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/kiberklaszter.hu\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/kiberklaszter.hu\/en\/wp-json\/wp\/v2\/users\/5"}],"replies":[{"embeddable":true,"href":"https:\/\/kiberklaszter.hu\/en\/wp-json\/wp\/v2\/comments?post=1398"}],"version-history":[{"count":1,"href":"https:\/\/kiberklaszter.hu\/en\/wp-json\/wp\/v2\/posts\/1398\/revisions"}],"predecessor-version":[{"id":1402,"href":"https:\/\/kiberklaszter.hu\/en\/wp-json\/wp\/v2\/posts\/1398\/revisions\/1402"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/kiberklaszter.hu\/en\/wp-json\/wp\/v2\/media\/1401"}],"wp:attachment":[{"href":"https:\/\/kiberklaszter.hu\/en\/wp-json\/wp\/v2\/media?parent=1398"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/kiberklaszter.hu\/en\/wp-json\/wp\/v2\/categories?post=1398"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/kiberklaszter.hu\/en\/wp-json\/wp\/v2\/tags?post=1398"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}