Social Engineering And Attacks !
Social
engineering is the tactic of manipulating, influencing, or deceiving a victim
in order to gain control over a computer system, or to steal personal and
financial information.
It uses psychological manipulation to trick users into making security mistakes or giving away sensitive information.
Types of
social Engineering attacks
·
Baiting: Attack where a scammer uses a false promise to lure a victim into trap
·
Scareware: Technique that aims to scare the victim into believing that they have a virus on their device
·
Pretexting: Technique that manipulates victim into divulging information
· Phishing: Technique to trick users into doing something dangerous
Phishing is the most common type of Social Engineering Attacks
Concepts of
social engineering
Social
engineering heavily relies on the 5 principles established by Robert Cialdini,
a behavioral psychologist and the author of INFLUENCE: The psychology of
persuasion. Those 5 key principles are-RECIPROCITY, COMMITMENT AND CONSISTENCY,
SOCIAL PROOF, AUTHORITY, LIKING AND SCARCITY.
Comments
Post a Comment