1.1 Compare and contrast different types of social engineering techniques Flashcards
Phishing
Phishing is the process of manipulating a victim to disclose personal or private information. An email asking for login details from a server not under the control of the company would describe a phishing attempt
Smishing
Smishing, or SMS phishing, is a social engineering attack that asks for
personal information using SMS or text messages.
Vishing
Vishing, or voice phishing, is using voice communication for the phishing
process. This phishing attempt used an email message, so it would not be
categorized as vishing
Spam
Spim
Spam over Instant Messaging
Spear phishing
Spear phishing is a directed attack that attempts to obtain private or
personal information. In this example, the result was to obtain payment and not to gather private information
Dumpster diving
Shoulder surfing
Pharming
Tailgating
Eliciting information
Whaling
Whaling is phishing targeted towards individuals at a higher level of an
organization. These persons are usually in upper management or have
access to the financial operations of the company
Prepending
Prepending adds information before a domain name in an attempt to fool
the victim into visiting a website managed by the attacker.
Identity fraud
Credential harvesting