Syrinx Technologies
FOLLOW US
  • Home
  • Company
  • Services
    • Services List
    • Testimonials
  • Blog
  • Publications
    • Podcasts
    • Articles
    • Presentations
  • FAQ
    • FAQ Blog
  • Contact

Q: What is "social engineering"?

1/1/2013

0 Comments

 
A: From Wikipedia:Social engineering is a collection of techniques used to manipulate people into performing actions or divulging confidential information. While similar to a confidence trick or simple fraud, the term typically applies to trickery for information gathering or computer system access and in most cases the attacker never comes face-to-face with the victim.
0 Comments

Q: What kinds of tests can be performed?

12/31/2012

0 Comments

 
A: There are many different kinds of tests that can be performed under the umbrella of 'social engineering'. Some of these are listed below:

  • Calling the help desk and pretending to be an employee.
  • Phishing emails - attempting to gain sensitive information from employees.
  • Arriving dressed as a service technician - can we gain access to the computer room.
  • Dumpster diving - yes, going through the trash cans.
  • Shoulder surfing - attempting to discover passwords over a users shoulder.
  • Standing around the "smoking area" and going inside the building without credentials.
0 Comments

    Categories

    All
    Applications
    Dial-In
    General Topics
    Pci
    Policies And Procedures
    Social Engineering
    Syrinx Technologies
    Virtualization
    Wireless

    RSS Feed

Powered by Create your own unique website with customizable templates.