- Plain language, mockups instead of real accounts
- Model behaviours: go to your bankโs site by typing the address
- Normalise STOP and verification
- Empathy for those who fell victim to an attack
๐ฏ Workshop Overview
๐ฅ Group: 18โ30 years, 15โ20 people
โฑ๏ธ Duration: 180 minutes
๐ฆ Outputs: CY1โCY7 (posters, account audit, checklists, 72โhour plan)
๐ง Goals: spotting scams, safe login, data protection, incident response
๐ Schedule
0โ10โ Opening and rules
10โ25โ Icebreaker โPhish or legit?โ
33โ65โ Module 1: Threat map and red flags
65โ95โ Module 2: Secure login and 2FA
105โ135โ Module 3: Marketplace and payments
135โ160โ Module 4: Data and documents โ mObywatel, ePUAP
160โ172โ Module 5: Response 5โ15โ60
172โ178โ Mentimeter POST + 72โhour plan
178โ180โ Closing
๐ Materials
CY1 โ Catalogue of red flags
CY2 โ Critical accounts audit
CY3 โ Marketplace & payments
CY4 โ Passwords, 2FA, passkeys
CY5 โ Personal data and documents
CY6 โ Response 5โ15โ60
CY7 โ 72โhour plan
CYโR โ Assessment rubric
๐ Trainer Guide
- Language barrier: pictograms and PL/UA/EN
- Short version (120โ)
- Extended version: privacy in social media
- Before: printouts CY1โCY7, mockups, Mentimeter
- After: photos of cards and posters, saved results
๐ Evaluation
Mentimeter questions (PRE/POST):
- I can recognise red flags in messages
- I can secure 3 key accounts
- I know how to respond (5โ15โ60 plan)