1.1 Social Engineering Techniques Flashcards
What is Phishing?
Attackers pretending to be a service provider to extract your information
What is Typosquatting?
A type of URL hijacking
https://professormessor.com
https://professormesser.com
What is Pretexting?
Lying in a situation to get information
Another type of URL Hijacking
What is Pharming?
Redirecting a group of people to a bogus website
What is Vishing?
Phishing over a voice call
What is Smishing?
Phishing over text messages (SMS)
What is Reconnaissance?
The attacker doing research to build a solid phishing attempt
What is Spear Phishing?
A specific attack against an indivdual or group of people
What is Whaling?
Spear phishing against the CEO or head accountant due to their access to documents and files
What is the pretext phase?
Setting the trap
What is the act of Eliciting Information?
Getting the victim at ease to make extracting information easy
What are some ways an attacker can use a victims information?
Credit card fraud
Bank fraud
Loan fraud
Government benefits fraud
How do you protect against Vishing attacks?
Don’t disclose personal details
Always verify before revealing info
What is Dumpster Diving?
Gathering important details from things people throw in their trash
How can you protect yourself from Dumpster Diving?
Cut documents into small pieces
Burning documents