Category archives for: Test To Protect (series)

Social Engineering: Test To Protect, Part IV

cyberdefense

PDF Key Scanner Goal: Send an email to your customer support department with title – “Acceptable Internet Use Policy” and body “Please carefully review the attached PDF – it contains changes to our Acceptable Internet Use Policy (AIUP). Regards, Human Resources”. The goal is to get employees to open this PDF. Description: This PDF has [...]

Social Engineering: Test To Protect, Part III

cyberdefense

Spoof and Steal Goal: Spoof your company’s login page. Send an email asking certain employees to click the provided link and login to your companies service to change their password. Hook to use: “due to new company policy you must change your password today and every 90 days henceforth.” Description: If your company login site [...]

Social Engineering: Test To Protect, Part II

cyberdefense

Switchblade Goal: Send a letter on your company’s letterhead to each IT manager asking that they take the enclosed USB card (with company insignia), stick it in their computer and copy important 2010 IT policy documents to their drive. “Our 2010 strategy is considered company confidential and for this reason we are not sending it [...]

Social Engineering: Test To Protect, Part I

cyberdefense

Anyone with access to any part of the system, physically or electronically carries at least the same potential security risk as the IT systems themselves.

Search Archive

Search by Date
Search by Category
Search with Google
Log in | Designed by Gabfire themes