Social engineering is the human side of breaking into a company network. Organizations similar to ours with authentication processes, firewalls, VPNs and network monitoring software are still wide open to an attack if an employee unwittingly gives away key information in an email, by answering questions over the phone with someone they don't know or failing to ask the right questions. For more information regarding this topic, please click on the links below.
http://www.auditmypc.com/freescan/readingroom/social-engineering.asp
http://www.securityfocus.com/infocus/1527
http://www.us-cert.gov/cas/tips/ST04-014.html
http://secureflorida.org/index.php?src=gendocs&link=Social%20Engineering&category=Internet%20Practices
|