1.6.11

Social Engineering

Test yourself on Social Engineering

Test your knowledge with free interactive questions on Seneca — used by over 10 million students.

Social Engineering

No matter how much money is spent on securing a network, human error is always a very real threat.

Social engineering

Social engineering

  • People are often the weak point in any network security package.
  • Social engineering is a form of attack that involves tricking people into giving away critical information or access details.
Cold calling

Cold calling

  • Social engineers often cold call victims and pretend to be from an organisation such as:
    • A bank.
    • A utility company.
  • The social engineer will then ask a victim to confirm their details, so that they can use these details to access their account later.
Fear

Fear

  • Fear is often used to put people off-guard and make them more likely to comply.
  • Social engineers know that people will make irrational decisions when panicked.
  • A common attack would be to call someone pretending to be a bank, and ask why they have emptied out their account:
    • This would panic the victim, who would then want to sign into their account straight away over the phone.

Protecting Against Social Engineering

Social engineering is very difficult to protect against. But there are a few tactics employed by organisations to cut down on the amount of successful attacks.

Education and training

Education and training

  • The most effective means of protection against social engineering is education and training.
  • People are made aware of the tactics of fraudsters:
    • This makes it more likely that they will recognise a fraudulent phone call.
Company security policies

Company security policies

  • Company security policies include instructions that employees must follow to uphold security.
  • For example:
    • Don't discuss a user account without the user having confirmed their PIN number.
Public awareness campaigns

Public awareness campaigns

  • Banks and governments often run public awareness campaigns to educate members of the public about the risks of social engineering.
  • These often include case studies of what could happen if people do not take care.
Jump to other topics
1

Computer Systems

1.1

Data Representation

1.2

Data Transmission

1.3

Hardware

1.4

Software

1.5

The Internet & its Uses

1.6

Cyber Security

1.7

Automated & Emerging Technologies

2

Algorithms, Programming & Logic

Practice questions on Social Engineering

Can you answer these? Test yourself with free interactive practice on Seneca — used by over 10 million students.

  1. 1
  2. 2
  3. 3
  4. 4
  5. 5
Answer all questions on Social Engineering

Unlock your full potential with Seneca Premium

  • Unlimited access to 10,000+ open-ended exam questions

  • Mini-mock exams based on your study history

  • Unlock 800+ premium courses & e-books

Get started with Seneca Premium