1). ANSWER :
GIVENTHAT :
Social engineering is a technique to get people
personal information without the consent of the person. The
information they need to get can be anything like personal phone
number, emails, bank account details, photographs etc.
Some of the
common social engineering attacks can be :-
- Email from a friend once the criminal gets access to your email
they can access your friend list and send them any email containing
a link which can hack into their system as well.
- They can ask your list for urgent help and they won’t be aware
your account his hacked which in turn can lead to sending money to
criminals
- Ask for the donation to the trust or something like that.
- Phishing they tend to use shortened URLs or embed links that
redirect users to sites that appear legitimate
- Notify you are a winner of a lottery and you need to send your
bank account details.
- Sending you a download to software which can steal private
information.
- Baiting which is a new way of phishing attempts
Inorder to
secure information from these attacks one should take some of the
steps as below
- Plan the training: Ensure all people learn the security
policies and procedures
- Don’t install random softwares and mostly received through
emails
- Scan for virus every attachment you receive and after that open
it
- Don’t keep the same password for all things
- Whenever you receive any offer first get it verified.
- Set your spam filters high.
- Install anti virus software, firewalls, email filters and keep
these up-to-date