< Previous episode - Index - Next episode >
CyberSense episode 6: Let’s Go Phishing
Download (right-click > Save As) MP4 (19Mb) or OGV (20Mb)
CyberSense episode 6 'Let’s Go Phishing' script
- FADE IN: Office interior - daytime. KIM is working at her computer when a soft football flies over, knocking something off her desk.
- KIM - Hey! (She shakes her head, smiling, and returns to checking her emails.) (To herself) Who really falls for these money-laundering emails?
- GRAPHICS: Kim’s screen. Scrolling through a Nigerian bank scam phishing email. She deletes it.
- KIM - What’s this?
- GRAPHICS: Kim’s screen. Scrolling through what appears to be an email from her bank. It is asking her to reconfirm her details because they are doing some upgrades to their web site. She clicks on the link which takes her to her bank’s website (or so she thinks). Kim begins entering her personal details.
- CUT TO: Inside hackers' bunker - daytime. EMILY and ANUSHKA are working away at computers.
- GRAPHICS: Anushka’s screen. 'External target detected', 'Attempting to exploit known vulnerabilities', 'Target successfully infected', 'Deploying Trojan. Success', 'Enabling Remote Desktop Connection'.
- PAN: from screen showing Kim’s personal details to Anushka.
- ANUSHKA - Gotcha!
- GRAPHICS: Anushka, now with full access to Kim’s computer. She starts clicking away madly, looking into all her systems. Various screens appear one after the other. Finally a financial systems screen.
- ANUSHKA - Yes! It looks like our new friend, Kim, has access to the payroll system.
- EMILY - Yeah, but we don’t have credentials yet. Should I install the keylogger?
- ANUSHKA - Maybe, but first let’s try the credentials she used to log into our bank website. (Types.)
- ANUSHKA - Bingo! We’re in. Let’s move some money.
- GRAPHICS: Money is transferred out of the departmental payroll account to an external account. 'Transfer complete.' Anushka and Emily high five.
- REWIND TO: KIM - What’s this?
- GRAPHICS: Kim’s screen. Scrolling through the supposed email from her bank. She types in the link manually into her browser. The information displayed doesn’t match up with what the email is saying.
- KIM - Bogus. (Hits 'delete'.)
- GRAPHICS: The email disappears. FADE OUT