by
AbdElraouf Sabri (@abd3lraouf)

Android Developer & penTester
What does social engineering mean?
Attack vectors
Demo
How to stop it
You could spend a fortune purchasing technology and services, and your network infrastructure could still remain vulnerable to old-fashioned manipulation.
Human action can be predicted
Actions can be influenced quite easily
Two types of responses: Natural vs Learned
Hackers will craft a scenario for you to enter, in order to elicit a secret you tried hard to keep it.

Pretexting
Phishing
Baiting
Quid Pro Quo

Fraudulent phone calls
Used to extract information
Also used to setup other attacks such as facility entry or phishing

Attempts to get users to provide information or perform an action


Attackers employ a sense of urgency
Make you act first and think later
Remember: Better be safe than sorry
Check domains
Typos?
Link hover!
Sample : Click here to join our group Facebook.com
Don’t download files you don’t know
Always check files (hashes md5 sha1 etc..)
Offers and prizes are fake
Delete any request for personal information or passwords
Reject requests for help or offers of help.
Set your spam filters to high.
Secure your devices.
Always be mindful of risks.
Social Engineering
The hacking of humans by manipulation, deception to gain access to an important info.