The worst part isn't the moment you realise. It's the twenty minutes afterwards, staring at a screen with everything feeling urgent at once and no idea which thing to do first.
That's where the real damage usually happens. People change the wrong password first and lock themselves out of the account that could have fixed the others. They reply to the scammer. They wait, because doing nothing feels safer than doing the wrong thing. Or they take the follow-up call from someone offering to recover their money, which is very often the same people running the second half of the scam.
None of that is stupidity. It's what panic does to sequencing. The fix is having the order decided in advance, while you're calm, so the version of you that's shaking only has to follow it.
What you get
The universal first moves. Contain, recover, secure. The three-phase arc underneath every recovery, whatever happened.
The severity ladder. Triage what's actually in front of you, from contained to critical, so you respond in proportion instead of treating a spam text like a bank breach or a bank breach like a spam text.
The Decision Matrix. Eight real scenarios, each matched to its actual danger and its correct first action.
Four scenario playbooks. A hacked account, a malware infection, a lost or stolen device, and money already paid to a fraudster. Each one step by step.
Seven Clarity Scripts. The first sixty seconds, the call to your bank, warning your contacts, and turning down the recovery scam that tends to arrive next.
Six self-tests, led by the reflex that matters more than any other: secure the email account first, always, because it's the master key to everything that can be reset.
This is for you if
- You want the order of operations settled before you need it, not improvised during it
- Something has already happened and you want a calm sequence to follow right now
- You wouldn't know what to say to your bank, or how quickly you need to say it
- You're responsible for helping family members when something goes wrong for them
- You've finished the Threats track and want the playbook the earlier courses keep referring to
By the last page
You'll have a rehearsed recovery plan, the right first move for eight common situations, and the words ready for the calls you'd rather not have to make.
Course details
- Format: downloadable PDF, 15 pages
- Time to complete: 45 to 60 minutes
- Series: Course 10 of 20, GhostNet Cyber Fundamentals
- Track: Track B, Threats and How to Spot Them, track finale
- Prerequisites: none, and it works perfectly well read first if something has already happened
- Works on: any device, any operating system
- Level: complete beginner, no technical background needed
Buy with confidence
Every course comes with a 30-day money-back guarantee. If it isn't useful, email us within 30 days and we'll refund you in full. You don't need to give a reason.
Where to go next
Course 11, Home Network and WiFi Security, opens Track C and moves from incidents to the everyday setup underneath them. Or take Threats and How to Spot Them, the five-course bundle covering Courses 06 to 10, for £100 instead of £150.