{"id":989098,"date":"2025-09-20T20:43:53","date_gmt":"2025-09-20T20:43:53","guid":{"rendered":"https:\/\/gpss.ro\/ghid-securitate\/recunoasterea-si-evitarea-atacurilor-de-phishing-2\/"},"modified":"2025-09-20T20:43:53","modified_gmt":"2025-09-20T20:43:53","slug":"recunoasterea-si-evitarea-atacurilor-de-phishing-2","status":"publish","type":"security_advisory","link":"https:\/\/delve.ro\/ro\/security-guide\/recunoasterea-si-evitarea-atacurilor-de-phishing-2\/","title":{"rendered":"Recunoa\u0219terea \u0219i evitarea atacurilor de phishing"},"content":{"rendered":"<p># Recunoa\u0219terea \u0219i evitarea atacurilor de phishing<\/p>\n<p>## Ce este phishing-ul?<\/p>\n<p>Phishing-ul este o tehnic\u0103 de fraud\u0103 cibernetic\u0103 prin care atacatorii se dau drept entit\u0103\u021bi de \u00eencredere pentru a fura informa\u021bii sensibile precum:<br \/>\n&#8211; Parole \u0219i nume de utilizator<br \/>\n&#8211; Detalii bancare \u0219i numere de card<br \/>\n&#8211; Informa\u021bii personale (CNP, adrese, telefoane)<br \/>\n&#8211; Date corporative confiden\u021biale<\/p>\n<p>## Cum s\u0103 recuno\u0219ti un email de phishing<\/p>\n<p>### \ud83d\udea8 Semne de avertizare<\/p>\n<p>#### 1. Expeditorul suspect<br \/>\n&#8211; **Adrese de email ciudate**: `amazom.com` \u00een loc de `amazon.com`<br \/>\n&#8211; **Domenii generice**: `@gmail.com` \u00een loc de domeniul oficial al companiei<br \/>\n&#8211; **Caractere \u00eenlocuite**: `rn` \u00een loc de `m`, `vv` \u00een loc de `w`<\/p>\n<p>#### 2. Urgen\u021ba fals\u0103<br \/>\n&#8211; &#8220;Contul t\u0103u va fi \u00eenchis \u00een 24 de ore!&#8221;<br \/>\n&#8211; &#8220;Ac\u021bioneaz\u0103 ACUM sau pierzi accesul!&#8221;<br \/>\n&#8211; &#8220;Ultima \u0219ans\u0103 s\u0103-\u021bi revendici premiul!&#8221;<\/p>\n<p>#### 3. Gre\u0219eli gramaticale<br \/>\n&#8211; Erori de ortografie evidente<br \/>\n&#8211; Traduceri automate proaste<br \/>\n&#8211; Formul\u0103ri neobi\u0219nuite sau ciudate<\/p>\n<p>#### 4. Link-uri suspecte<br \/>\n&#8211; **Verific\u0103 \u00eentotdeauna URL-ul** \u00eenainte de a da click<br \/>\n&#8211; \u021aine cursorul peste link f\u0103r\u0103 s\u0103 dai click<br \/>\n&#8211; Caut\u0103 discrepan\u021be \u00eentre textul afi\u0219at \u0219i URL-ul real<\/p>\n<p>## Tipuri comune de phishing<\/p>\n<p>### \ud83d\udce7 Email Phishing<br \/>\nCel mai comun tip &#8211; emailuri care imit\u0103 b\u0103nci, magazine online sau servicii populare.<\/p>\n<p>### \ud83d\udcac Smishing (SMS Phishing)<br \/>\nMesaje text care pretind s\u0103 fie de la:<br \/>\n&#8211; Servicii de curierat<br \/>\n&#8211; B\u0103nci<br \/>\n&#8211; Autorit\u0103\u021bi guvernamentale<\/p>\n<p>### \ud83d\udcf1 Vishing (Voice Phishing)<br \/>\nApeluri telefonice care pretind s\u0103 fie de la:<br \/>\n&#8211; Suport tehnic Microsoft\/Apple<br \/>\n&#8211; Banca ta<br \/>\n&#8211; ANAF sau alte institu\u021bii<\/p>\n<p>### \ud83c\udfa3 Spear Phishing<br \/>\nAtacuri \u021bintite care folosesc informa\u021bii personale despre tine pentru a p\u0103rea mai credibile.<\/p>\n<p>## Cum s\u0103 te protejezi<\/p>\n<p>### \u2705 M\u0103suri preventive<\/p>\n<p>1. **Verific\u0103 expeditorul**<br \/>\n   &#8211; Controleaz\u0103 cu aten\u021bie adresa de email<br \/>\n   &#8211; Sun\u0103 direct compania dac\u0103 ai dubii<br \/>\n   &#8211; Nu r\u0103spunde la emailuri suspecte<\/p>\n<p>2. **Nu da click pe link-uri**<br \/>\n   &#8211; Acceseaz\u0103 site-urile direct din browser<br \/>\n   &#8211; Tasteaz\u0103 manual adresa site-ului<br \/>\n   &#8211; Folose\u0219te bookmark-uri pentru site-urile importante<\/p>\n<p>3. **Activeaz\u0103 filtrele anti-spam**<br \/>\n   &#8211; Configureaz\u0103 filtrul de spam al emailului<br \/>\n   &#8211; Folose\u0219te software antivirus cu protec\u021bie email<br \/>\n   &#8211; Raporteaz\u0103 emailurile de phishing<\/p>\n<p>4. **Verific\u0103 certificatele SSL**<br \/>\n   &#8211; Caut\u0103 lac\u0103tul verde \u00een browser<br \/>\n   &#8211; Verific\u0103 c\u0103 URL-ul \u00eencepe cu `https:\/\/`<br \/>\n   &#8211; Evit\u0103 site-urile cu certificate expirate<\/p>\n<p>## Ce s\u0103 faci dac\u0103 ai fost victim\u0103<\/p>\n<p>### \ud83c\udd98 Ac\u021biuni imediate<\/p>\n<p>1. **Schimb\u0103 toate parolele**<br \/>\n   &#8211; \u00cencepe cu conturile importante (banc\u0103, email)<br \/>\n   &#8211; Folose\u0219te parole unice pentru fiecare cont<br \/>\n   &#8211; Activeaz\u0103 autentificarea cu doi factori<\/p>\n<p>2. **Contacteaz\u0103 banca**<br \/>\n   &#8211; Raporteaz\u0103 imediat orice tranzac\u021bie suspect\u0103<br \/>\n   &#8211; Blocheaz\u0103 cardurile compromise<br \/>\n   &#8211; Solicit\u0103 monitorizare suplimentar\u0103<\/p>\n<p>3. **Raporteaz\u0103 incidentul**<br \/>\n   &#8211; La poli\u021bie (pentru fraude financiare)<br \/>\n   &#8211; La CERT-RO (cert.ro)<br \/>\n   &#8211; La platforma de raportare a phishing-ului<\/p>\n<p>4. **Monitorizeaz\u0103 conturile**<br \/>\n   &#8211; Verific\u0103 zilnic extrasele bancare<br \/>\n   &#8211; Activeaz\u0103 alerte pentru tranzac\u021bii<br \/>\n   &#8211; Verific\u0103 rapoartele de credit<\/p>\n<p>## Educa\u021bie \u0219i con\u0219tientizare<\/p>\n<p>### Pentru acas\u0103:<br \/>\n&#8211; Educ\u0103 familia despre pericolele phishing-ului<br \/>\n&#8211; Creeaz\u0103 reguli clare pentru copii<br \/>\n&#8211; Verific\u0103 periodic set\u0103rile de securitate<\/p>\n<p>### Pentru afaceri:<br \/>\n&#8211; Organizeaz\u0103 training-uri regulate<br \/>\n&#8211; Simuleaz\u0103 atacuri de phishing (cu acordul angaja\u021bilor)<br \/>\n&#8211; Implementeaz\u0103 politici clare de securitate<br \/>\n&#8211; Folose\u0219te solu\u021bii enterprise anti-phishing<\/p>\n<p>## Resurse utile<\/p>\n<p>&#8211; **CERT-RO**: cert.ro &#8211; Raportare incidente<br \/>\n&#8211; **Poli\u021bia Rom\u00e2n\u0103**: politiaromana.ro &#8211; Fraude online<br \/>\n&#8211; **ANSSI**: dnsc.ro &#8211; Ghiduri de securitate<\/p>","protected":false},"excerpt":{"rendered":"<p>Cum s\u0103 identifici \u0219i s\u0103 te protejezi de emailurile \u0219i site-urile false.<\/p>","protected":false},"featured_media":0,"template":"","meta":[],"advisory_audience":[],"advisory_topic":[],"advisory_source":[],"advisory_severity":[],"advisory_region":[],"news_source":[],"class_list":["post-989098","security_advisory","type-security_advisory","status-publish","hentry"],"_links":{"self":[{"href":"https:\/\/delve.ro\/ro\/wp-json\/wp\/v2\/security_advisory\/989098","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/delve.ro\/ro\/wp-json\/wp\/v2\/security_advisory"}],"about":[{"href":"https:\/\/delve.ro\/ro\/wp-json\/wp\/v2\/types\/security_advisory"}],"version-history":[{"count":0,"href":"https:\/\/delve.ro\/ro\/wp-json\/wp\/v2\/security_advisory\/989098\/revisions"}],"wp:attachment":[{"href":"https:\/\/delve.ro\/ro\/wp-json\/wp\/v2\/media?parent=989098"}],"wp:term":[{"taxonomy":"advisory_audience","embeddable":true,"href":"https:\/\/delve.ro\/ro\/wp-json\/wp\/v2\/advisory_audience?post=989098"},{"taxonomy":"advisory_topic","embeddable":true,"href":"https:\/\/delve.ro\/ro\/wp-json\/wp\/v2\/advisory_topic?post=989098"},{"taxonomy":"advisory_source","embeddable":true,"href":"https:\/\/delve.ro\/ro\/wp-json\/wp\/v2\/advisory_source?post=989098"},{"taxonomy":"advisory_severity","embeddable":true,"href":"https:\/\/delve.ro\/ro\/wp-json\/wp\/v2\/advisory_severity?post=989098"},{"taxonomy":"advisory_region","embeddable":true,"href":"https:\/\/delve.ro\/ro\/wp-json\/wp\/v2\/advisory_region?post=989098"},{"taxonomy":"news_source","embeddable":true,"href":"https:\/\/delve.ro\/ro\/wp-json\/wp\/v2\/news_source?post=989098"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}