Question

In: Computer Science

After reading the article "Don't Include Social Engineering in Penetration Tests," discuss whether social engineering should...

After reading the article "Don't Include Social Engineering in Penetration Tests," discuss whether social engineering should be included as part of a penetration test. Knowing that the human is the weakest link in the cybersecurity chain, is it ethical as part of the pen test to engage in behavior that the author describes as a "grey area: compromising staff members' personal devices or personal email accounts (as opposed to work accounts); breaking into office buildings to steal equipment or plant network monitoring devices; compromising social media accounts to perform recon; etc."? (Kaplan-Moss, 2017)

Review several of your fellow learners' posts and respond to at least two of your peers by end of Day 7 of the week. In your response to your classmates' posts:

  • Do you agree with your fellow learners' assessments of social engineering as part of penetration testing?
  • Try to expand on your rationale by asking your classmates questions and provide additional resources and evidence to support your claims and to extend their thoughts on their point of view.

References

Kaplan-Moss, J. (2017, June 27). Don't include social engineering in penetration tests [Blog post]. Retrieved from https://jacobian.org/2017/jun/27/social-engineering-pentests/

Solutions

Expert Solution

After reading the article "Don’t Include Social Engineering in Penetration Tests", My opinion is that it's best to not engage in social engineering as a part of the penetration tests. this may be quite debatable, and while I realize there are some benefits, the danger far outweighs the advantages. I agree that human error is one of the leading causes of compromising of data, conducting social engineering as a part of pen tests leads to a lot of legal issues for a company. because the examples identified within the article of breaking into one’s car to confiscate their laptop, additionally as following a private home to try to infiltrate their home network opens the doors to legal battles. Furthermore, as identified within the article Kaplan-Moss highlights that the aim of the penetration test is to "generate remediation work" (Kaplan-Moss, 2017). Penetration tests are a uniform add progress, there's always always more and more technology that arises thus impacting the securities and vulnerabilities of a network. Additionally, I agree that attacks on people are personal, moreover, because of the undeniable fact that when personnel falls for a social engineering attack they feel terrible. I've got seen it far too often during my time in a commission(service) where a subordinate falls for a social engineering attack, thus allowing viruses onto the pc system. the simplest way to combat this is often through continuous training, and ensuring staff members are awake to the newest social engineering trends.

NOTE: The above-provided solution is according to your question. If find any errors then please do let me know through comments. I'll try to resolve your errors.

UPVOTE!!!! Please... Thank You!!!


Related Solutions

Answer the following questions after reading The Saints and The Roughnecks article. Explain labeling or social...
Answer the following questions after reading The Saints and The Roughnecks article. Explain labeling or social reaction theory. Explain self-fulfilling prophecy. Discuss how labeling influenced the lives of these boys and resulted in self-fulfilling prophecy. Give specific examples. What role did economics or social class play in the labeling? Compare your high-school experience with those at Hannibal High. In what ways did your "reputation" either protect or harm you. Think of a time when you were labeled negatively or positively...
Review Public Relations and Social Media: Deliberate or Creative Strategic Planning. After reading this article and...
Review Public Relations and Social Media: Deliberate or Creative Strategic Planning. After reading this article and identifying challenges associated with social media, discuss how organizations can use social media to effectively communicate with internal and external target audiences. Reflect on your own professional experience with social media, and consider the following questions in your response: How can organizations build trust through social media, both internally and externally? How can social media be used to address public relations issues? How can...
After reading the Article: Order of lipid phases in model and plasma membranes: discuss the clinical...
After reading the Article: Order of lipid phases in model and plasma membranes: discuss the clinical implications of this branch of membrane biology. Did the article mention specific diseases related to this field? Search for other articles in this field and mention your findings in your response. article can be found if you Google : Order of lipid phases in model and plasma membranes.
After reading the article "How Do Venture Capitalists Choose Investments?" posted on moodle and after reading...
After reading the article "How Do Venture Capitalists Choose Investments?" posted on moodle and after reading chapter 7 'Analysis of VC Investments', summarize what are the key criteria a VC investor pays particular attention to before making a prudent investment decision. Any citation of real life data would be value adding!
After reading the article, answer the following questions: There were 3 scenarios mentioned in the article...
After reading the article, answer the following questions: There were 3 scenarios mentioned in the article that ended with a penalty. 1. Do you agree with the penalty(in each of the 3 scenarios) and why? 2. Do you disagree with the penalty(in each of the 3 scenarios) and why? Article: https://www.ncsbn.org/NSNA_Social_Media_Recommendations.pdf
Read the article titled “Keeping up with Your Quants”. After reading this article, you'll understand the...
Read the article titled “Keeping up with Your Quants”. After reading this article, you'll understand the importance of "thinking quantitatively" in the workplace. Explain to us your thoughts on this article.   Discuss your initial thoughts about statistics, how you view the role of statistics in the business world, what 2-3 items you learned from this article, an example of a real-world scenario that could use a “Quant” person to help solve it, and what you hope to gain from this...
A role is a set of social expectations. After reading about the different responsibilities of a...
A role is a set of social expectations. After reading about the different responsibilities of a nonprofit manager, consider what might happen if a manager mixes roles and finds herself or himself torn in several directions by conflicting expectations? For your initial post, write a short story that describes a realistic example of a role conflict that a nonprofit manager might encounter. Comment on two of your peers’ posts, offering a solution to the conflict, and comment on others' solutions,...
Student Loan. Is it worth it? After reading the article found in the following site (you...
Student Loan. Is it worth it? After reading the article found in the following site (you may have to copy and paste), post substantive comments on the student loan issue. http://www.huffingtonpost.com/john-t-delaney/the-hidden-student-loan-debt-problem_b_6343800.html
Student Loan. Is it worth it? After reading the article found in the following site (you...
Student Loan. Is it worth it? After reading the article found in the following site (you may have to copy and paste), post substantive comments on the student loan issue. http://www.huffingtonpost.com/john-t-delaney/the-hidden-student-loan-debt-problem_b_6343800.html
After reading the article by Michael Porter on his Diamond of National Advantage (in addition to...
After reading the article by Michael Porter on his Diamond of National Advantage (in addition to Dyer et al, (2020), Chapt 9, p.164, Figure 9.5), apply Porter’s Diamond Yahoo company and an international geographic market where the organization currently does business. Briefly apply the four factors of the diamond Yahoo and a specific market location (country or region). You may need to do research on the company and its operations in that international market. How important do you feel the...
ADVERTISEMENT
ADVERTISEMENT
ADVERTISEMENT