
educationMay 29, 202622:07pending
Course 35 - Footprinting and Reconnaissance | Episode 8: From Target Reconnaissance to Phishing Execution
Get every episode summarized
Each time CyberCode Academy publishes, we email you a written briefing from the transcript — the topics, who appeared, and any specific claims, with the ad reads skipped.
Email me new episodesFree for 3 shows. No card needed.
About this episode
In this lesson, you’ll learn about: social engineering attacks and spear-phishing execution1. What is Social Engineering?
You can listen and download our episodes for free on more than 10 different platforms:
https://linktr.ee/cybercode_academy
- A psychological attack technique
- Targets human behavior instead of systems
- Exploits trust, urgency, and curiosity
- Trick the victim into revealing information or executing malicious actions
- Collect Personally Identifiable Information (PII):
- Job role
- Relationship status
- Daily habits
- Interests (e.g., pets, hobbies)
- Social media platforms (e.g., mock “mybook”)
- Enables highly targeted (spear-phishing) attacks
- Helps guess:
- Passwords
- Security questions
- Social Engineering Toolkit
- Kali Linux
- Spear-phishing email with malicious attachment
- File disguised as:
- PCFIX.zip.pdf
- Double extension trick to:
- Bypass user suspicion
- Appear as a legitimate document
- Configure SMTP server
- Send high-priority message
- Create urgency:
- “Suspicious internet activity detected”
- Force the victim to act without thinking
- Downloads the file
- Opens the attachment
- Execution of hidden payload
- Attacker gains access via:
- Metasploit Framework
- Remote command shell access
- Full system control
- Reconnaissance
- Weaponization
- Delivery
- Exploitation
- Access
- A simple phishing email can lead to complete system compromise
- Human trust
- Lack of awareness
- Poor email inspection
- Security awareness training
- Email filtering & sandboxing
- Avoid opening suspicious attachments
- Verify sender authenticity
- Social engineering targets people, not systems
- Reconnaissance makes attacks more effective
- File disguise techniques increase success rate
- Phishing can lead to full system compromise
- Awareness is the strongest defense
- Recon → “Know the victim”
- Phishing → “Exploit trust”
- Payload → “Gain access”
You can listen and download our episodes for free on more than 10 different platforms:
https://linktr.ee/cybercode_academy
Get every episode summarized
Each time CyberCode Academy publishes, we email you a written briefing from the transcript — the topics, who appeared, and any specific claims, with the ad reads skipped.
Email me new episodesFree for 3 shows. No card needed.
Hosts & guests
No transcript yet
This episode has not been transcribed. Request it and it moves to the front of the queue.
More episodes
More from CyberCode Academy

Course 43 - Practical Malware Development | Episode 9: Finalizing Client-Side Co...
CyberCode Academy
Sep 20, 202624:00completed

Course 43 - Practical Malware Development | Episode 8: Building a PHP Command an...
CyberCode Academy
Sep 19, 202622:41completed

Course 43 - Practical Malware Development | Episode 7: Building a PHP Session Co...
CyberCode Academy
Sep 18, 202617:30completed

Course 43 - Practical Malware Development | Episode 6: Database Foundations and...
CyberCode Academy
Sep 17, 202621:04completed