Top 5 Social Engineering Exploit Techniques

This article by Jamey Heary provides solid examples of how social engineers exploit human weaknesses by intimidation, familiarity or charisma. Many organizations layer on physical and logical defenses with a focus on external attacks and disgruntled insiders. That approach does not address authorized personnel with good intentions.

It is necessary to educate employees, contractors and suppliers of the threat posed by social engineers. Start by sending security awareness tips. Add social engineering to on-site security assessments (with written permission from management). And read Jamey's article of course!

Read more: http://www.pcworld.com/article/182180/top_5_social_engineering_exploit_techniques.html

Kind regards,

Gideon

Gideon T. Rasmussen
CISSP, CISA, CISM, CIPP
Charlotte, NC
http://www.virtualcso.com

http://www.securityisgolden.com
http://www.infosecresources.com
http://groups.yahoo.com/group/gideons-infosec-list


Posted: Mon Nov 23, 2009 8:41 pm
image
INFOSEC List:
image