70 likes | 180 Views
Social Engineering. Loose lips sink ships. Tom Conley, Senior Information Security Analyst Matthew Dalton, Director of Information Security Ohio University. What is Social Engineering?.
E N D
Social Engineering Loose lips sink ships Tom Conley, Senior Information Security Analyst Matthew Dalton, Director of Information Security Ohio University
What is Social Engineering? • While other forms of hacking target the technology, social engineering attempts to exploit human psychology to achieve the hacker’s goals. • Emotional tension + path to resolution > Logic or Controls = social engineering • Emotional “Amplifiers” and Distractions are catalysts for this. • Social Engineering has been known by many names • Trojan Horse • Con Men • Snake Oil Sales • Phishing
Scenario #1 Matthew Tom Pretends to work in the HR department • Pretends to be from IT, trying to get a password into the HR system
Scenario #2 Matthew Tom Pretends to work in the Registrar’s office • Ex-boyfriend pretends to be a distraught parent, trying to get a particular student’s class schedule.
Scenario #3 Tom Matthew Pretends to pass by in Baker • Pretends to be a survey taker at the bottom of Baker Center