Remember Me
forgot your password?

Weakest Link in the Information Security Awareness Chain?!?

Answer of this question is simple and incredible for many people ears... Weakest link in informations security awareness chain is PEOPLE!!! Why? Because we are people with human weaknesses and there are people who use that to get benefit.

Social engineering is the name given to a category of security attacks in which someone

manipulates others into revealing information that can be used to steal data, access to systems, access to cellular phones, money or identity. That’s definition, but actually, social engineering is the acquisition of sensitive information or inappropriate access privileges by an outsider, based upon the building of an inappropriate trust relationship with insiders.

There are three aspects of social engineering:

* Different avenues of persuasion

* Perception that affect social interaction

* Techniques for persuasion and influence.

Social engineers use many different methods to get out information from peoples. To retrieve desired information they can use computer based methods – refers to software action or human based methods – that refers to person-to-person communication, sometime even both.

They can calling and pretend vice president or someone from tech support group, looking over a shoulder or even going through the trash. They can send you spam, chain letters and viruses and do much more to get necessary information!

Here is one example of social engineering prepares by Melissa Guenther, LLC. :

Mr.Smith: Hello?

Caller: Hello, Mr. Smith. This is Fred Jones in tech support. Due to some disk space constraints, we’re going to be moving some user’s home directories to another disk at 8:00 this evening. Your account will be part of this move, and will be unavailable temporarily.

Mr.Smith: Uh, okay. I’ll be home by then, anyway.

Caller: Good. Be sure to log off before you leave. I just need to check a couple of things. What was your username again, smith?

Mr.Smith: Yes. It’s smith. None of my files will be lost in the move, will they?

Caller: No sir. But I’ll check your account just to make sure. What was the password on that account, so I can get in to check your files?

Mr.Smith: My password is tuesday, in lower case letters.

Caller: Okay, Mr. Smith, thank you for your help. I’ll make sure to check you account and verify all the files are there.

Mr.Smith: Thank you. Bye.

From this conversation we can see how clever and east they cheat information, allow us thinking that we are useful!

Statistic said that, at the most risk to social engineering fraud is elderly, because they tend to be more trusting and less familiar with technology. But always there is possibility that everyone can become a victim of social engineer!

Because it is so important, make information security awareness training like a part of daily life!

Article source infosecuritylab

Rate this Article: 0 / 5 stars - 0 vote(s)
Print Email Re-Publish

Add new Comment



Captcha

  • Latest Software Articles
  • More from InfoSecurityLab

DVD Backup for Mac, backup DVD movies on Mac OS X

By: cindywu1215 | 08/12/2009
Mac DVD Backup enables Mac users to easily and safely copy, burn DVDs in less time and peak quality on Mac OS X, Snow Leopard.

iMovie import AVCHD, AVCHD to iMovie - How to import AVCHD video files to iMovie on Mac OS X with AVCHD to iMovie Converter

By: appletv1985 | 08/12/2009
How to step by step import avchd video files into imovie supported MPEG-2/MPEG-4/Quick Time Movie/AVCHD/DV and HDV(High Definition Video) on Mac OS X with AVI to imovie converter.

iMovie import FLV, FLV to iMovie - How to import youtube files format .flv to imovie on Mac OS X with FLV to iMovie Converter

By: appletv1985 | 08/12/2009
How to step by step importing flv video files to apple imovie, convert flv to imovie, put flv into imovie with free download mac flv to imovie converter.

iMovie import MP4, MP4 to iMovie - How to import .mp4 video files to imovie on Mac OS X with MP4 to iMovie Converter

By: appletv1985 | 08/12/2009
MP4 to iMovie Converter not only can import .mp4 video files into imovie on Mac OS X, but also can import ts, tp, trp, m2ts, mts, tod, dat, vob, flv, asf, mkv, m4v, wmv, etc. into imovie on Mac OS X.

iMovie import WMV, WMV to iMovie - How to import wmv video files to imovie on Mac OS X with WMV to iMovie Converter

By: appletv1985 | 08/12/2009
How to step by step importing wmv video files into apple imovie, convert wmv to imovie, put wmv into imovie with free download mac wmv to imovie converter.

iMovie import AVI, AVI to iMovie - How to import avi video files to imovie on Mac with avi to imovie converter

By: appletv1985 | 08/12/2009
How to step by step importing avi video files into apple imovie, convert avi to imovie, put avi to imovie with avi to imovie converter.

Christmas flash portraits slideshow gallery

By: blachmeo | 08/12/2009
It's easy to make a flash portraits slideshow for Christmas.A unique Christmas slideshow photo gallery can be impressive and captivate the audience.

Know more knowledge about xbox 360 accessories

By: Jackpicoult | 08/12/2009
The xbox 360 accessories was produced by microsoft only with features having lots of first-party and third-party accessories in the market. Today the xbox 360 accessories can support at least four controllers with wired and wireless gamepads in the market.

Computer Viruses

By: InfoSecurityLab | 23/01/2007 | Security
In information security , computer virus is a manmade program or piece of code that is loaded onto your computer without your knowledge and runs against your wishes.

Internet Attack Methods

By: InfoSecurityLab | 23/01/2007 | Security
The U.S. Government’s National Information Assurance Glossary defines Information Security as: Protection of information systems against unauthorized access to or modification of information, whether in storage, processing or transit, and against the denial of service to authorized users or the provision of service to unauthorized users, including those measures necessary to detect, document, and counter such threats.

Security Using Public Internet Access

By: InfoSecurityLab | 23/01/2007 | Security
Internet comes to peoples lives and then suddenly comes truth, that WE CAN'T LIVE WITHOUT INTERNET. We can't even simple daily activities do without Internet, but not always we can use Internet at work or home. It is a fact and no one can deny that. Because more and more cities going wireless - get wireless network which spread all city so that everyone with laptop an wireless card can get access to the Internet, and also there are Internet café and other Internet access points.

Information Security Endangered

By: InfoSecurityLab | 23/01/2007 | Security
our time is coming. Spy programs are stealing information more easily. The reason is weak algorithms, which provide systems safety, for example data encryption and hashing.

Tips of Security

By: InfoSecurityLab | 23/01/2007 | Security
Information is the lifeblood of most, if not all, modern organisations, so protecting (this) information against unauthorised disclosure, modification or erasure is a basic requirement of management.

Anti-virus Software Comparison Test

By: InfoSecurityLab | 23/01/2007 | Security
Virus.gr tested quite a few different software companies to see how they would stack up against each other. How did the 147,000+ virus test pan out?

Security Awareness

By: InfoSecurityLab | 23/01/2007 | Security
Security awareness is knowledge and attitude members of an organization possess regarding protection of the physical and information assets of that organization. Many organizations require formal security awareness training for all employees when they take up sensitive assignments and, in some cases, periodically thereafter.

Quick Tips of E-mail Security

By: InfoSecurityLab | 23/01/2007 | Security
Feature-rich email is not only a powerful way of communication, but also a major security threat. The more features an email service provides the security holes are made for hackers. In addition to the usual email security headache - executable attachments - HTML messages introduce new problems. HTML is not a plain text, it is rendered and it may contain executable code. You get dozens emails daily. Every time you read an HTML email message - something could be executed. It is just like you woul

Submit Your Articles Free: Signup
Article Categories




Use of this web site constitutes acceptance of the Terms Of Use and Privacy Policy | User published content is licensed under a Creative Commons License.
Copyright © 2005-2008 Free Articles by ArticlesBase.com, All rights reserved. (0.36, 6, w1)