>_ The Cyber Casebook // AP CYBER · AP NETWORKING · AI
Home / All case studies / The Impostor Inbox

Key terms

ImpersonationSession cookieAitM phishingPasskey

AP Cybersecurity alignment

  • 1.1.C.3Victims may download malware or click a link that that installs malware on their device, steals information from their web browser, or directs them to a website where their login credentials can be captured by an adversary.Learning objective: Describe possible impacts for victims of social engineering attacks.
  • 2.1.A.2Pretexting is when adversaries create a believable reason to contact a target.Learning objective: Identify social engineering attacks.
  • 2.1.A.3Authority is when adversaries impersonate someone with power over a target or pretend to relay instructions from that person.Learning objective: Identify social engineering attacks.

AP Networking alignment

  • 1.3.B.3Phishing refers to an adversary sending deceptive communications, like spoofed emails, fake websites, or urgent messages, to mislead users into revealing credentials or downloading malware. Security controls to limit the…Learning objective: Determine appropriate security controls to limit the impacts of common device attacks.
  • 1.4.B.1To prevent phishing-based account compromise, users should verify message sources and use caution before interacting with emails or messages, especially those requesting sensitive information. Users should: • verify the…Learning objective: Implement device- and account-level security practices to prevent phishing, credential compromise, and data loss.
  • 4.1.A.3When confidentiality is compromised, systems are vulnerable to having sensitive data exposed or stolen. A breach of confidentiality can be identified by: • unauthorized access • network traffic showing exfiltration of…Learning objective: Identify evidence of compromised confidentiality, integrity, or availability.

Related case studies