One evening, during the graveyard shift, an AOL technical support operator took a call from a hacker. During the hour long conversation the hacker mentioned he had a car for sale. The technical support operator expressed an interest so the hacker sent him an e-mail with a photo of the car attached. When the operator opened the attachment it created a back door that opened a connection out of AOL's network, through the firewall, allowing the hacker full access to the entire internal network of AOL with very little effort on the hacker's part.
The above is a true story and it is an excellent example of one of the biggest threats to an organisation's security - social engineering. It has been described as people hacking and it generally means persuading someone inside a company to volunteer information or assistance.
Examples of techniques employed by hackers include:
Social engineering attacks can have devastating consequences for the businesses involved. Accounts can be lost, sensitive information can be compromised, competitive advantage can be wiped out and reputation can be destroyed.
By implementing some simple techniques you can reduce the risk of your organisation becoming a victim or, in the event that you are targeted, keep the consequences to a minimum.
Conduct regular audits, not only on IT systems but also on policies, procedures and personnel so that any potential weaknesses can be addressed as soon as possible.
About The Author
Rhona Aylward has extensive experience in the area of Quality Management and more recently in Information Security Management. She is a qualified Lead Auditor for BS7799 and CEO for Alpha Squared Solutions Ltd.
www.a2solutions.co.uk, raylward@a2solutions.co.uk
What is Phishing? In a typical Phishing attack, a criminal... Read More
Over £5 billion pounds was spent on online shopping in... Read More
May. 16th 2005 - MicroWorld has reported the discovery of... Read More
As you know, this time the virus under the name... Read More
Everyone should eliminate spyware and adware from your hard drive... Read More
Despite the current wave of identity theft and corporate security... Read More
There you are busily typing away on your PC or... Read More
Sooner or later everyone with an email account will receive... Read More
At this point, if you've got the whole "turning the... Read More
A little bit of time invested into learning about internet... Read More
One evening, during the graveyard shift, an AOL technical support... Read More
Spyware/adware is a new major concern for PC users everywhere.... Read More
Paypal is a great site and is used by many... Read More
The words Corporate Security may conjure up images of a... Read More
Pharming is one of the latest online scams and rapidly... Read More
Internet is the ocean of knowledge. In this ocean you... Read More
First of all we need to get some terms stated.... Read More
When you signed up for that ultra-fast DSL or Cable... Read More
Credit card fraud is a growing problem for online businesses... Read More
Have you ever got an email asking you to confirm... Read More
The internet is undoubtedly a fantastic resource for families and... Read More
There is no doubt that "how-to articles" have become a... Read More
Your computer is as slow as molasses. Your mouse freezes... Read More
According to the Anti-Phishing Working Group (APWG) email scams also... Read More
From the "Ask Booster" column in the June 17, 2005... Read More
Phishing: (fish'ing) (n.)This is when someone sends you an email... Read More
P C. owners are constantly at risk from attacks by... Read More
If you run any type of Internet business, Adware and... Read More
Working from home has its advantages, including no commute, a... Read More
During the release of a new software product specialized to... Read More
History and BackgroundThe virus was one of the first ever... Read More
Spelt phishing, but pronounced as above, this despicable act is... Read More
Have you seen the web site, www.freestuff.com? Or have you... Read More
To blog or not to blog? Well, why not? Lots... Read More
The Federal Bureau of Investigation has identified "phishing" as the... Read More
The top five online scams on the Internet hit nearly... Read More
Before we start, I want to make it clear that... Read More
Threats we ordinary Web users face online leave us no... Read More
Virus damage estimated at $55 billion in 2003. "SINGAPORE -... Read More
Is your data secure? Think again. Securing data is unlike... Read More
Spyware/adware is a new major concern for PC users everywhere.... Read More
Despite the current wave of identity theft and corporate security... Read More
We all get the odd virus now and then, but... Read More
Ebay is a great site and is used by many... Read More
This is the second in a series of articles highlighting... Read More
There you are busily typing away on your PC or... Read More
For many, the daily walk to the mailbox evokes mixed... Read More
A few nights ago I received an email from "2CO"... Read More
Phishing is the act of some individual sending an email... Read More
There is nothing more important that password security in world... Read More
I'm in the Anti-Spyware business, and I'm doing a lot... Read More
A couple of days ago, I was searching for a... Read More
Geek SuperheroGeek Superhero watches your computer for changes, immediately notifying... Read More
Over £5 billion pounds was spent on online shopping in... Read More
Credit card fraud is a growing problem for online businesses... Read More
Your computer is as slow as molasses. Your mouse freezes... Read More
Every now and then you can read about a new... Read More
First I would like to stress I am condoning the... Read More
The trash folder in my main inbox hit 4000 today.... Read More
There are ways to insure security though. You can get... Read More
Identity theft ? also known as ID theft, identity fraud... Read More
With the advent of the World Wide Web, a whole... Read More
Millions of people make purchases online, but many people are... Read More
Spyware SolutionProbably Today's Biggest Computer Problem. You Suffer Without Knowing... Read More
Every day millions of people go online to find information,... Read More
A couple of years back, I paid my dues the... Read More
Internet Security |