Social Engineering Flashcards

1
Q

Spear Phishing

A

targeted phishing

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Whaling/Whale Phishing

A

Phishing that target executive level to get wire transfers etc

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Smishing

A

Phishing over SMS

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Vishing

A

Phishing over the phone

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

SPAM

A

Large quantities of unsolicited advertising over email

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

SPIM

A

Spam sent over Text

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Dumpster Diving

A

Removing sensitive info from literal trash cans

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Shoulder Surfing

A

Looking over someones shoulder - Privacy screens, masked passwords

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Pharming

A

redirecting to malicious site

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

How to mitigate Shoulder Surfing

A

privacy screens. masked passwords, multiple asterisks per keystroke

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Tailgating Mitigations

A

Cameras to monitor doors, key card access.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

Pharming examples

A

DNS Cache Poisoning, Host File Injection,

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

Hoax

A

Someone pretends to be an IT person or fellow coworker. Seem legitimate.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

Prepending

A

Adding mentions to tweets/social media to make them seem more personal or to get broader audience, higher engagement.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

Watering Hole Attack

A

Uses less secure websites or ones a particular target is likely to visit to plant malware and infect users.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

Typo Squatting/URL Hijacking

A

Taking over sites that users may go to if they misspelled the original site like goggle.com