Tricking individuals into disclosing sensitive personal information to gain access to sensitive data (such as bank account numbers) by claiming to be a trustworthy entity in an electronic communication (e.g., internet web sites). -nist.gov