social engineering © 2014 project lead the way, inc.computer science and software engineering

7
Social Engineering © 2014 Project Lead The Way, Inc. Computer Science and Software Engineering

Upload: howard-johnston

Post on 18-Jan-2016

215 views

Category:

Documents


1 download

TRANSCRIPT

Page 1: Social Engineering © 2014 Project Lead The Way, Inc.Computer Science and Software Engineering

Social Engineering

© 2014 Project Lead The Way, Inc.Computer Science and Software Engineering

Page 2: Social Engineering © 2014 Project Lead The Way, Inc.Computer Science and Software Engineering

• Attackers use social engineering to trick people

• Used to gather information or install malware

Social Engineering

Page 3: Social Engineering © 2014 Project Lead The Way, Inc.Computer Science and Software Engineering

• Attackers send millions of emails, text messages, or phone calls

• Not tailored to recipient• From random email:

–Do not follow a link–Do not open an attachment–Do not respond to a message

• Start in a browser to go to a site, retrieve a document, or initiate a transaction

Phishing

Page 4: Social Engineering © 2014 Project Lead The Way, Inc.Computer Science and Software Engineering

• Message tailored to you, using your hobbies, your contact names, imposter look-alikes of web sites you visit

• From unexpected email, beware:– following a link–opening an attachment

• Start in a browser to go to a site, retrieve a document, or initiate a transaction

• Confirm with sender

Targeted Attacks

Page 5: Social Engineering © 2014 Project Lead The Way, Inc.Computer Science and Software Engineering

• Do not be tricked by warnings that "Your computer may be infected"

• Use known software and beware imitations

Beware: Rogue Security Software

Page 6: Social Engineering © 2014 Project Lead The Way, Inc.Computer Science and Software Engineering

• Beware URL spoofs in links –1 and l –O and 0– international characters like i and í

• Use bookmarks or type a URL to ensure a true site when using passwords and money

Beware: Malicious Websites