Social Engineering
Upendra Sugathadasa
SME/CISO - Information Security | Geek | Go-getter | Lead by example
What is it?
“any act that influences a person to take action that may or may not be in their best interest"
Typically involve some form of psychological manipulation, fooling otherwise unsuspecting users or employees into handing over confidential or sensitive data. By invoking urgency, fear, or similar emotions in the victim, leading the victim to reveal sensitive information, click a malicious link, or open a malicious file.
Types of Social Engineering Attacks
1. Phishing
2. Pretexting
3. Baiting
5. Tailgating