Social Engineering: Anatomy of a Hack

How a social engineering expert gained access to extremely sensitive information with little more than a thrift-shop shirt, a plate of cookies and a Linksys box.

» View Article

READER FEEDBACK
Preview
GovernmentSecurity.org
Wed, 2009-02-04 18:05

Social Engineering has always been and will continue to be a threat to any enterprise. But it is a complicated test to perform. First the group of professionals that are able to effectively perform this test are few. At first glance the process seems to be easy, but it takes a certain type of mind and experience interacting with people to understand how to successfully manipulate an individual.

Secondly I find many organizations shy from implementing the test because they feel it targets employees. I try to encourage companies to not look at the test in this manner. A true social engineering test is not trying to point out the flaws in an individual, its goal is to highlight flaws in procedures, policy's and employee education.

reply
Ron
Tue, 2009-06-09 20:26

If you want some fun reading about social engineering read the "Rogue Warrior" series of books (a dozen an counting) by Richard Marcinko. He is a former Navy Seal who writes about performing "Red Team" attacks on various facilities. His language is rather blunt but he gets the point across.

reply
toyol_sy@fiq
Thu, 2009-07-23 09:10

i want to hack C.S.O.

reply
Anonymous
Mon, 2009-09-28 22:26

The final paragraph is the key to the article.

Security Awareness Training is a requirement for any organization. Without awareness you will never have a secure environment.

HackerTarget.com

reply
Post a comment
The content of this field is kept private and will not be shown publicly.
  • Allowed HTML tags: <a> <em> <strong> <cite> <code> <ul> <ol> <li> <dl> <dt> <dd>
  • Lines and paragraphs break automatically.