Chapter 6
Social Engineering
In This Chapter
Understanding social engineering
Examining the ramifications of social engineering
Performing social engineering tests
Protecting your organization against social engineering
Social engineering takes advantage of the weakest link in any organization’s information security defenses: people. Social engineering is “people hacking” and involves maliciously exploiting the trusting nature of human beings to obtain information that can be used for personal gain.
Social engineering is one of the toughest hacks to perpetrate because it takes bravado and skill to come across as trustworthy to a stranger. It’s also by far the toughest thing to protect against because people who are making their own security decisions are involved. In this chapter, I explore the consequences of social engineering, techniques for your own ethical hacking efforts, and specific countermeasures to defend against social engineering.
Introducing Social Engineering
In a social engineering scenario, those with ill intent pose as someone else to gain information they likely ...
Become an O’Reilly member and get unlimited access to this title plus top books and audiobooks from O’Reilly and nearly 200 top publishers, thousands of courses curated by job role, 150+ live events each month,
and much more.
Read now
Unlock full access