Explanation of phishing simulations

The aim of our phishing simulations: getting safer together.

Phishing attacks often start with a seemingly harmless e-mail. Even just taking a moment to pause can help you spot attacks and prevent damage. The aim of our phishing simulations is to raise security awareness and encourage people to handle suspicious e-mails safely.


How to spot phishing e-mails

  • Unknown or unusual sender
  • Suspicious or shortened links
  • Urgency or time pressure
  • Unexpected requests
  • Spelling or grammatical errors
  • Requests for sensitive information

Detailed information on how to recognise phishing emails currently circulating at Bauhaus University can be found in the warnings posted on the SCC noticeboard.


What should you do if you receive a real phishing email?

Do not click – Do not open any links or attachments.

Do not enter any data – Never enter passwords, TANs or login details.

Report – Forward any suspicious e-mails to the SCC.

Notify – Notify the SCC immediately if you have already clicked on a link or entered any details.

Protect – By acting quickly, you help to protect yourself and others.


IT Security Awareness Course

Specialise in your knowledge with our short, practical learning modules. The topic of phishing is covered in the ‘Online Fraud’ learning module.

Link


Frequently Asked Questions

Was that a genuine phishing email?

  • No. This e-mail was part of an internal phishing simulation and at no point posed a risk to your data or your device.

Was my data or behaviour recorded?

  • As part of the simulation, the only information recorded is how you interacted with the e-mail (e.g. whether you clicked on a link). This data is recorded completely anonymously; no names or other personal data are stored. Passwords or other sensitive data are not stored either. 

What happens if I clicked on a link?

  • Don’t worry – that’s exactly what this exercise is for. No data was transmitted and no malware was installed. Use the tips on this page to help you spot phishing even more easily in future.

Why does the university carry out such simulations?

  • Phishing is one of the most common methods of attack on universities. Through these simulations, we aim to raise security awareness and help all staff recognise genuine phishing emails at an early stage.

Contact & Help

The SCC will be happy to help you.

e-mail: nutzerservice[at]uni-weimar.de
Telephone: +49 3643 58 24 24
Website: https://www.uni-weimar.de/scc/


Thank you very much for your participation!

Every phishing simulation helps to raise security awareness at Bauhaus-University. In a joint effort, we can create a secure digital working environment.