
Free Tool · Naples & SW Florida
Phishing Quiz.
Can your team
spot the scam?
Take our free phishing quiz: 10 realistic emails, texts and calls based on the scams hitting Florida small businesses. Spot the red flags, get your score, then share it with your staff.
Phishing Test
Take the phishing quiz.
Then share it with your team.
Use it as a quick phishing test for employees. Each message shows the sender, subject and links; hover over or tap a link to see where it really goes. Choose Phishing or Legit, then read the clues before moving on. It takes about 5 minutes and works on any phone or computer.
The scams hitting small businesses right now
Phishing is the most-reported cybercrime in the United States. In its 2025 Internet Crime Report, the FBI's Internet Crime Complaint Center (IC3) logged 191,561 phishing and spoofing complaints, more than any other crime type. Business email compromise, where a criminal poses as a boss or vendor to redirect a payment, accounted for about $3 billion in reported losses that year.
In Southwest Florida the same patterns show up every week: fake Microsoft 365 password alerts, fake DocuSign invoices, “CEO” gift-card requests, vendor bank-change emails, unpaid SunPass toll texts and callers pretending to be IT support. The quiz above covers all of them, plus real messages that deserve your trust.
The 7 red flags of a phishing email
1) The sender's address doesn't match the company, or the Reply-To goes somewhere else. 2) Urgency, threats or secrecy. 3) A request to move money in a new way: gift cards, wire transfers or new bank details. 4) A link whose real destination isn't the company's own site. 5) An attachment or document you weren't expecting. 6) A request for a password or a sign-in code. 7) Something you didn't start, like a sign-in prompt or a package you never ordered. One flag is a reason to slow down; two or more is a reason to stop and verify through a phone number or website you already trust.
What to do if someone clicked a phishing link
Act fast and skip the blame: a quick report is worth more than a perfect record. If a file was opened, disconnect that computer from the network. Change the affected password from a different device, then call your IT provider so they can sign the account out everywhere, check for new mail-forwarding rules and scan the computer. If money was sent, call your bank right away to ask for a recall and file a report at ic3.gov. Then warn coworkers, because the same message usually lands in several inboxes.
Why training, email security and MFA work together
No single layer catches everything. Email filtering stops much of the junk and many known bad links before anyone sees them. Multi-factor authentication (MFA) means a stolen password alone isn't enough to get in, especially with number matching. Training covers what slips through: the well-written, targeted message that only a person can judge. Together they turn one careless click into a non-event instead of a breach.
How FLTECHS runs phishing simulations and training
FLTECHS sends your team realistic simulated phishing emails, tracks who clicks and who reports them, and follows up with short, focused lessons instead of long lectures. It's part of our cybersecurity service, paired with Microsoft 365 security settings, email filtering and MFA, and we report the results to you in plain English. It works for fully managed clients and for in-house IT teams through co-managed IT, in English and Spanish.
Can I use this phishing quiz with my employees?
Yes. Send them the link with the Share button, or run it together in a staff meeting and talk through each message. It's a good warm-up, but it isn't a substitute for ongoing simulated phishing, which tests people in their real inboxes, without warning.
Is the phishing quiz free?
Yes. It's free, with no sign-up and no email required. It runs entirely in your browser and FLTECHS doesn't store your answers. If you'd like help, the Send my results button opens our contact form with your score filled in, and nothing is sent until you submit it.
What should I do if I clicked a phishing link?
Close the page and don't enter anything else. If you typed a password, change it right away from a different device and tell IT. If you opened a file, disconnect from the network and call IT before doing anything else. Need help now? Call FLTECHS at 239-986-8647, Monday to Friday, 9 AM to 5 PM ET.