Site icon The Word 360

Social engineering is the art of psychological manipulation

&Tab;&Tab;<div class&equals;"wpcnt">&NewLine;&Tab;&Tab;&Tab;<div class&equals;"wpa">&NewLine;&Tab;&Tab;&Tab;&Tab;<span class&equals;"wpa-about">Advertisements<&sol;span>&NewLine;&Tab;&Tab;&Tab;&Tab;<div class&equals;"u top&lowbar;amp">&NewLine;&Tab;&Tab;&Tab;&Tab;&Tab;&Tab;&Tab;<amp-ad width&equals;"300" height&equals;"265"&NewLine;&Tab;&Tab; type&equals;"pubmine"&NewLine;&Tab;&Tab; data-siteid&equals;"173035871"&NewLine;&Tab;&Tab; data-section&equals;"1">&NewLine;&Tab;&Tab;<&sol;amp-ad>&NewLine;&Tab;&Tab;&Tab;&Tab;<&sol;div>&NewLine;&Tab;&Tab;&Tab;<&sol;div>&NewLine;&Tab;&Tab;<&sol;div><p style&equals;"text-align&colon;justify&semi;">&NewLine;<p> Social engineering in its most basic form is described as the art of psychological manipulation&period; It is generally associated with the context of security where a person is manipulated to perform a certain action or divulge confidential information&period; It could also be something as simple as breach of trust&comma; confidence trick or a simple fraud&period;<&sol;p>&NewLine;<p style&equals;"text-align&colon;justify&semi;">There are many forms of social engineering and are generally associated with human decision-making&period; These acts typically occur when &OpenCurlyDoubleQuote;bugs in the human hardware&comma;” are exploited in various combinations to create an attack&period;<&sol;p>&NewLine;<p style&equals;"text-align&colon;justify&semi;">Here are a few to watch out for&colon;<&sol;p>&NewLine;<p style&equals;"text-align&colon;justify&semi;"><b>Phishing&colon;<&sol;b><&sol;p>&NewLine;<p style&equals;"text-align&colon;justify&semi;">By far the most popular social engineering technique&comma; it is an act of fraudulently obtaining private information&period; Usually&comma; the phisher sends an e-mail that appears to come from a legitimate business—a bank&comma; or credit card company—requesting &OpenCurlyDoubleQuote;verification” of information and warning of some dire consequence if it is not provided&period; The e-mail usually contains a link to a fraudulent web page that seems legitimate—with company logos and content—and has a form requesting everything from a home address to an ATM card’s PIN&period;<&sol;p>&NewLine;<p style&equals;"text-align&colon;justify&semi;"><b>Pretexting&colon;<&sol;b><&sol;p>&NewLine;<p style&equals;"text-align&colon;justify&semi;">It is the act of creating and using an invented scenario &lpar;the pretext&rpar; to engage a victim in a way that increases the chance the victim will reveal information or perform certain actions&period; It most often involves some prior research or setup and the use of this information for imitation &lpar;e&period;g&period;&comma; date of birth&comma; Social Security Number&comma; etc&rpar; to establish legitimacy in the mind of the targeted victim&period; This technique is used to fool a business into disclosing customer information as well as by private investigators to obtain telephone records&comma; utility records&comma; banking records and other information directly from company service representatives&period;<&sol;p>&NewLine;<p style&equals;"text-align&colon;justify&semi;"><b>Baiting&colon;<&sol;b><&sol;p>&NewLine;<p style&equals;"text-align&colon;justify&semi;">This technique has been widely used in developed and underdeveloped countries&period; It uses physical media and relies on the curiosity or greed of the victim&period; Typically&comma; the attacker leaves a malware infected floppy disk&comma; CD ROM&comma; or USB flash drive in a location sure to be found &lpar;elevator&comma; bathroom &comma; sidewalk&comma; parking lot&rpar;&comma; gives it a legitimate looking and simply waits for the victim to use the device&period;<&sol;p>&NewLine;<p style&equals;"text-align&colon;justify&semi;"><b>Tailgating&colon;<&sol;b><&sol;p>&NewLine;<p style&equals;"text-align&colon;justify&semi;">This act involves an attacker&comma; seeking entry to a restricted area secured by unattended&comma; electronic access control&comma; e&period;g&period; by RFID card&comma; simply walks in behind a person who has legitimate access&comma; hence the term &OpenCurlyDoubleQuote;tail” gating&period;<&sol;p>&NewLine;<p style&equals;"text-align&colon;justify&semi;">With the coming of technology and systems&comma; it is highly important for all entrepreneurs to secure their business and day-to-day transactions from such acts of confidence tricking and fraud&period; As a business&comma; have you educated your employees recently on what information is safe to divulge and to whom they can divulge it&quest; Understanding social engineering techniques can help you develop a plan for how to protect your business&period; Recognize the signs and protect yourself before it is too late&excl;<&sol;p>&NewLine;<p>&num;business &num;Pretexting &num;Tailgating &num;WhatisSocialengineering &num;breachoftrust &num;atmcard &num;theft &num;data &num;decisionmaking &num;computing &num;Phishing &num;socialsecuritynumber &num;Network &num;technology &num;internet &num;Baiting &num;confidencetricking &num;smallbusiness &num;confidencetrick &num;Socialengineering &num;privateinvestigators &num;psychologicalmanipulation<&sol;p>&NewLine;

Exit mobile version