Exam Compass - Social Engineering Quiz Flashcards
A social engineering technique whereby attackers under disguise of a legitimate request attempt to gain access to confidential information is called:
Phishing
Privilege escalation
Backdoor access
Shoulder surfing
Phishing
The practice of using a telephone system to manipulate user into disclosing confidential information is known as:
Whaling
Spear phishing
Vishing
Pharming
Vishing
A situation in which an unauthorized person can view another user’s display or keyboard to learn their password or other confidential information is referred to as:
Spear phishing
Tailgating
Shoulder surfing
Spoofing
Shoulder surfing
Phishing scams targeting people holding high positions in an organization or business are known as:
Vishing
Smishing
Whaling
Pharming
Whaling
What is tailgating?
Acquiring unauthorized access to confidential data
Looking over someone’s shoulder to get information
Gaining unauthorized access to restricted areas by following another person
Manipulating a user into disclosing confidential information
Gaining unauthorized access to restricted areas by following another person
Which social engineering attack relies on identity theft?
Vishing
Impersonation
Elicitation
Confidential bait
Impersonation
In computer security, the term “Dumpster diving” is used to describe a practice of sifting through trash for discarded documents containing sensitive data. Found documents containing names and surnames of the employees along with the information about positions held in the company and other data can be used to facilitate social engineering attacks. Having the documents shredded or incinerated before disposal makes dumpster diving less effective and mitigates the risk of social engineering attacks.
True
False
True
The term “Evil twin” refers to a rogue Wireless Access Point (WAP) set up for eavesdropping or stealing sensitive user data. Evil twin replaces the legitimate access point and by advertising its own presence with the same SSID appears as a legitimate access point to connecting hosts.
True
False
True