Welcome to Forumpk.com Mark forums read | View Forum Leaders
Forumpk.com




Science & Technology News and Discussion All the latest, from the world of IT

Reply
LinkBack Thread Tools Rate Thread Display Modes
What is social engineering?
 
  #1 (permalink)  
Old 17-05-2008, 11:34 PM
Dur-E-Sameen's Avatar
 

Join Date: Dec 2004
Location: Karachi,Pak
Posts: 107
Thanks: 0
Thanked 0 Times in 0 Posts
Rep Power: 10
Dur-E-Sameen will become famous soon enough
049 What is social engineering?

Online criminals can use sophisticated technology to try to gain access to your computer, or they can use something simpler and more insidious: social engineering.



Social engineering is a way for criminals to gain access to your computer. The purpose of social engineering is usually to secretly install spyware or other malicious software or to trick you into handing over your passwords or other sensitive financial or personal information.


Some online criminals find it easier to exploit human nature than to exploit holes in your software.


Types of social engineering


There are several types of social engineering you should be aware of:


•Phishing

•Spear phishing

•E-mail hoaxes



Do not reveal any personal information in e-mail or online unless you know who you are dealing with and why. Additionally, make sure you are in a secure environment: that’s the key to help you avoid any type of attack.



Phishing: Fraudulent e-mail messages and Web sites



The most common form of social engineering is the phishing scam. Phishing scams employ fraudulent e-mail messages or Web sites that try to fool you into divulging personal information.



For example, you might receive an e-mail message that appears to come from your bank or other financial institution that asks you to update your account information. The e-mail message provides a link that appears to go to a legitimate site, but really takes you to a spoofed or fake Web site.



If you enter your login, password, or other sensitive information, a criminal could use it to steal your identity.



Phishing e-mail messages often include misspellings, poor use of grammar, threats, and exaggerations. For more information about phishing, see Recognize phishing scams and fraudulent e-mails.



If you think you might already be a victim, see What to do if you've responded to a phishing scam.
To help protect yourself against phishing, try the Microsoft Phishing Filter.



Spear phishing: Focused attacks that seem to come from people you know.



Spear phishing is any highly targeted e-mail scam; but they usually are employed in a business environment.



Spear phishers send e-mail messages that appears genuine to all the employees or members within a certain company, government agency, organization, or group.



The message might look like it comes from your employer, or from a colleague who might send an e-mail message to everyone in the company, such as the head of human resources or IT. It might include requests for user names or passwords or might contain malicious software, like a trojan or a virus.



Spear phishing is a more sophisticated type of social engineering than phishing, but the techniques you can use to avoid being fooled are the same.



For more information, see Spear phishing: Highly targeted e-mail scams. To help avoid trojans and viruses, use antivirus software such as Windows Live OneCare.



E-mail hoaxes: Look out for easy money promises.


E-mail hoaxes come in many different forms, ranging from a scam that requests your help getting money out of a foreign country (often Nigeria) to a promise that you've won a lottery.



The common element is that you're usually promised a large sum of money for little or no effort on your part.



The scammer tries to get you to send money or reveal financial information that they can use to steal your money or your identity, or both.



For more information, see Spot and avoid advanced fee fraud and You have not won the Microsoft Lottery.



You might also receive scams sent through an Instant Message (IM). To read more, see 10 tips for safer Instant Messaging.



How technology can help



Your first level of defense should be to secure your computer. For more information, see Protect your computer in 4 steps.



Learning how to spot social engineering techniques is the next step and the new Windows Vista operating system makes that easier to do:



•Internet Explorer 7 is available for Windows Vista and has a Phishing Filter built in that scans and alerts users to potentially harmful phishing sites.


•Windows Vista Parental Controls offer parental controls for children to help prevent kids from downloading unwanted software.



•Windows Defender helps you avoid spyware and other malicious software that can be part of a social engineering scam. Windows Defender comes with Windows Vista. If you use Windows XP SP2, you can download Windows Defender for no charge.



•User Account Control built into Windows Vista requires your consent before allowing a potentially dangerous program to run. This helps reduce the impact of viruses, spyware, and other threats you might encounter through social engineering.

What is social engineering_Online criminals
__________________
Jug Jug Jiyo!
Reply With Quote
Sponsored Links
  #2 (permalink)  
Old 20-05-2008, 12:48 AM
Style Mantra's Avatar
R.I.P
 

Join Date: Feb 2006
Posts: 17,027
Country: Users Flag!
Images: 50
Thanks: 29
Thanked 19 Times in 18 Posts
Rep Power: 19
Style Mantra has a spectacular aura aboutStyle Mantra has a spectacular aura about
thnx 4 da info...I was searching info abt 'Phishing' ... this thread had a lot of info abt it thnx...
__________________
Reply With Quote
Reply

Bookmarks


Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools
Display Modes Rate This Thread
Rate This Thread:

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is On
Trackbacks are On
Pingbacks are On
Refbacks are On
Forum Jump

These are the 70 most used thread tags
Tag Cloud
(r) acne scars anti virus bahar beauty tips bhala clean technology dosti ke sms dosti sms dosti sms in hindi dosti sms in urdu eid sms english eid sms forumpk free urdu poetry friendship iz friendship poetry funny eid sms funny poetry funny ramadan sms funny sms funny urdu poetry gama green it greetings & quotes happy eid hindi poetry funny hindi ramadan sms islamic sms islamic sms collection islamic sms in urdu jat latest / new eid sms latest/new islamic sms love & romantic sms love poetry love sms love sms2 love urdu poetry matka. mobi-number city details nazms new ramadan sms nice sms pakistani forum. play online games poems quotes poetry pos quran ramadan sms text messages romantic poetry romantic sms rut sad love poetry sad love potery sad urdu poetry savar search sharp aquos sms on dosti text messages ultra large ultra slim urdu dosti sms urdu eid sms urdu islamic sms urdu poetry urdu sms xs1
These are the 100 most searched terms
Search Cloud
7 c's of communication amjad islam amjad cap result cplc currency rates desi mast download ringtones earn money earn money online eid sms forumpk forumpk.com free sms ghazal sms graves of prophets indian cricket league inspirational qoutes ketrina load shedding in pakistan mahandi mehndi designs mobile friendship mobile prices mobile ring tones mobile tones moviesmobile.net new funny sms orkut pakistan richest man pakistan's richest man richest man in pakistan richest man of pakistan richest pakistani ring tones ringtones sahih bukhari sahih bukhari in urdu sms hi sms sms.pk smspk smspk.com standard chartered standard chartered bank umaira ahmed urdu horoscope wasi shah worldcall evdo www.kalpoint.com www.orkut.com www.smspk.com ...

All times are GMT +5. The time now is 05:25 AM.
Forumpk.com Online Pakistan Discussion Forums Copyright © 2000-2008 KalPoint.com