RUHS, Jaipur, M.Sc Nursing Entrance Exam-2015
Nursing Informatics & Technology [E5]
Medium

Which of the following is an example of phishing?

Appeared in: RUHS, Jaipur, M.Sc Nursing Entrance Exam-2015

Explanation

  • Phishing is a cybercrime where attackers use fraudulent emails, texts, or websites to trick people into revealing sensitive information.
  • The primary goal of phishing is to steal personal data, such as login credentials, credit card numbers, or bank account details.
  • An email that appears to be from a bank and asks for account details is a classic phishing scam, as it uses deception (impersonating a trusted entity) to steal financial information.

Why Other Options Were Wrong

  • Option A: A virus hiding in a file is a form of malware (like a Trojan horse). Phishing is the method of deception used to get someone to open such a file, but the virus itself is the malicious payload, not the phishing act.
  • Option B: A legitimate software update is a protective measure from a verified software vendor, designed to improve security and functionality. It is the opposite of a malicious attack.
  • Option D: A firewall is a network security system that acts as a barrier to block unauthorized access. It is a defensive tool used to protect against cyber threats, not an example of a threat itself.

Related Visual

Visual explanation — Related Visual
Clinical Relevance
  • Nursing practice connection: This is primarily an exam-oriented knowledge point with limited direct bedside application, so retain Identifying Phishing Attacks as background academic context rather than a clinical decision trigger.
  • In a healthcare setting, nurses and other staff are frequent targets of phishing attacks. A successful attack can compromise Electronic Health Records (EHRs), leading to a breach of Protected Health Information (PHI).
  • A breach of PHI is a serious violation of patient privacy laws like HIPAA, resulting in heavy fines for the institution and potential job loss for the employee.
  • Nurses must be trained to recognize and report suspicious emails to the IT department immediately to protect patient data and the hospital's network integrity.
How to Approach the Question
  • First, understand the core definition of the keyword in the question: 'Phishing'. Recall or deduce that it involves deception to steal sensitive information.
  • Read each option carefully and evaluate it against this definition.
  • Analyze Option A: 'A virus hiding in a file'. This is malware, a malicious program. While it can be delivered by phishing, it's not the act of phishing itself.
  • Analyze Option B: 'A legitimate software update'. This is a valid, safe action, the opposite of a threat.
  • Analyze Option C: 'An email asking for your bank details'. This perfectly matches the definition of phishing—using a deceptive email to steal sensitive financial data.
  • Analyze Option D: 'A firewall setting'. This is a security tool used for protection, not an attack.
Concept Tested & Keywords
  • Concept Tested: Identifying Phishing Attacks
  • Stem keywords: phishing, example
  • Lead-in keywords: Which of the following is

Question ID

Q7_CDfHje5vcEOO23XnV3F

Reference Book

E6 Parks TextBook of Preventive & Social Medicine part 2 — Subpart B (pp 233-449 of 464) p. 213-215

E6 Nursing Fundamentals Potter Perry 12e Part 2 p. 156-158

Practise the full RUHS, Jaipur, M.Sc Nursing Entrance Exam-2015

Attempt every question from this paper in a timed mock, then review the full solution for each one.