# Digital fraud and scams: test your reflexes

URL : https://skillrung.com/en/quiz/cybersecurity/online-fraud-and-scams
Topic: Cybersecurity · Updated on 2026-09-11

## In brief

Fraud aimed at professionals almost always rests on three levers: a change of bank details, an urgency that rules out checking, and a request for discretion. One single reflex defeats them: call the person back on the number you already hold, never on the one given in the message. This free ten-question quiz tests that reflex on ordinary office situations.

Ten questions on the scams that genuinely circulate at work: a fake change of bank details, fake tech support, a swapped QR code, an abandoned USB stick. No technical knowledge is required.

## The questions

### 1. A regular supplier writes that their bank details have changed and asks you to pay the next invoice into the new account. What do you do first?

- You call them on the number you already know
- You call the number given in the message you received
- You reply to the message to ask for confirmation
- You pay and check the account the following month

### 2. An attachment you were not expecting can be dangerous even when it is addressed to you by name.

### 3. A sticker on a parking meter offers to pay for parking by scanning a QR code. What is the main risk?

- The code leads to a fake payment page
- The payment is collected twice by the local council
- The parking is registered against the wrong space
- The payment receipt is not sent by email

### 4. Which elements should put a payment on hold while you check? Several answers are expected.

- A change of bank details announced by message
- A request for confidentiality about the current transaction
- An urgency that rules out any usual check
- An invoice in the supplier's usual format
- An amount matching the previously signed quote

### 5. You find a USB stick in the car park at your workplace. What is the right thing to do?

- Hand it to the IT department without plugging it in
- Open it on your workstation to identify its owner
- Plug it into a free computer in the room
- Open it after running an antivirus scan

### 6. Someone claiming to be a technician asks you to install a remote access tool, for a fault you never reported. What is the right reaction?

- Hang up, then call support back on the internal number
- Accept the installation, then watch what is done
- Ask for their employee number before accepting the installation
- Accept if the call comes from a local phone number

### 7. Ransomware merely makes files unreadable; it never copies them elsewhere.

### 8. A payment fraud has just been discovered in your organisation. Which step determines what remedies remain possible?

- File a police report and request a transfer recall
- Wait for the result of the technical analysis of the workstation
- Inform only the supplier whose identity was used
- Change the passwords and close the incident

### 9. Which measures genuinely reduce the impact of an attack that has already happened? Several answers are expected.

- An offline backup tested by an actual restore
- An up-to-date list of contacts to notify
- An incident reporting procedure known to everyone
- An antivirus renewed every year on every workstation
- An insurance policy taken out without an inventory of the data held

### 10. Your bank calls to report a suspicious transaction and asks you to approve a cancellation transfer from your app. What should you make of it?

- No cancellation is ever obtained by approving a transfer
- The request is valid if the adviser is identified
- The request is valid if the amount stays small
- The request is valid if the displayed number matches

Correct answers and explanations are not published: they are given once you have answered, on the quiz page.
