Phishing is a form of social engineering that involves email, phone, text or illegitimate websites. Phishing is the process of attempting to acquire sensitive information such as usernames, passwords and credit card details by masquerading as a trustworthy entity using bulk email which tries to evade spam filters. Emails claiming to be from popular social web sites, banks, auction sites, or IT administrators are commonly used to lure the unsuspecting public. Phishing attacks attempt to gain sensitive, confidential information such as usernames, passwords, credit card information, network credentials, and more. The details are then used to steal people's money, or to steal their identity in order to commit crimes. Email phishing is a numbers game. An attacker sending out thousands of fraudulent messages can net significant information and sums of money, even if only a small percentage of recipients fall for the scam. In both instances, the collected information is used to access protected accounts or data. Phishing attacks often use email as a vehicle, sending email messages to users. As seen above, there are some techniques attackers use to increase their success rates.