πŸ”

Cybersecurity Basics

Analyse a phishing incident, practise security vocabulary, conditionals and modal verbs.

B1–B2 Β· IT English
πŸ“–
Ex A – Phishing Incident ReportReading comprehension
πŸ“
Ex B – Security VocabularyGap-fill with word bank
✍️
Ex C – Conditionals & ModalsGrammar: if-clauses and obligation
Enter your details to begin
AReading: A Phishing Attack on Our Company
Read the incident report, then choose the correct answer for each question.

Last Tuesday, several employees received an email that appeared to come from our IT department. The message claimed that their mailboxes were full and asked them to 'verify' their accounts through a link. The link led to a fake login page that copied our company design.

Three colleagues entered their credentials before the security team was alerted. Their passwords were reset immediately, and two-factor authentication stopped the attackers from accessing the accounts β€” the criminals had the passwords, but not the codes from the employees' phones.

This incident shows why you must never click links in unexpected emails. If a message asks for your password, it is almost certainly phishing: our IT department never asks for credentials by email. Check the sender's address carefully, and if you are unsure, forward the message to the security team before you do anything else. Remember: one careless click can lead to a serious data breach.

1. The phishing email pretended to be from .
2. The link in the email led to .
3. The attackers could not access the accounts because of .
4. The number of colleagues who entered their credentials was .
5. If you receive a suspicious message, you should .
6. According to the text, the IT department .
BVocabulary: Cybersecurity Terms
Complete each sentence with the correct term. Two words in the bank are not needed.
Word Bank phishing malware encryption two-factor authentication VPN vulnerability patch breach switch backlog
1. Fake emails that trick users into revealing passwords are called .
2. protects data by making it unreadable without a key.
3. A software update that fixes a security hole is a .
4. requires a password plus a code from your phone.
5. Employees use a to connect securely to the company network from home.
6. A weakness that attackers can exploit is called a .
7. Viruses, worms and ransomware are all types of .
CGrammar: Security Rules with Conditionals and Modals
Choose the correct form to complete each security rule or warning.
1. If you a phishing link, your data may be compromised.
2. If the firewall is misconfigured, traffic blocked.
3. You share your password with anyone β€” not even IT staff.
4. If an update available, install it as soon as possible.
5. Employees use a VPN when working from public Wi-Fi.
6. If we install the patch, attackers could exploit the vulnerability.
7. Unless you verify the sender, you open the attachment.
βœ…

All exercises complete!

Review your answers below, then send them to your teacher.

Optional: get feedback

Leave this empty if you don't want feedback. If you enter your email, your teacher will reply with feedback on your answers.

Click the button below to send your answers directly to your teacher.