1.Question 1John, a threat actor, called up Johana, the IT help desk member of the targeted organization, and informed her that Mr. Tibiyani was about to give a presentation to customers but he could not open his files as they were corrupted and that Mr. Tibiyani requested him to call and ask her to send the files to him as soon as possible to start the presentation.Identify the social engineering context created by the attacker in the above scenario. 1 pointSocial proof Consensus proof Scarcity Intimidation 2.Question 2In which of the following attacks does an attacker send an email or message to the target offering free gifts such as money and software, on the condition that the user forwards the email to a predetermined number of recipients? 1 pointHoax letters Instant chat messenger Pop-up windows Chain letters 3.Question 3In which of the following techniques does an attacker execute malicious programs on a victim’s computer or server, and when the victim enters any URL or domain name, it automatically redirects the victim’s traffic to the attacker-controlled website? 1 pointImpersonation Spimming Dumpster diving Pharming 4.Question 4Abin, an attacker intending to access the critical assets and computing devices of an organization, impersonated Sally, a system administrator. Abin masquerades as Sally and gathers critical information from computing devices of the target organization. Identify the type of insider threat demonstrated in the above scenario. 1 pointNegligent insider Malicious insider Compromised insider Professional insider 5.Question 5Which of the following countermeasures can assist users in reducing the chances of identity theft? 1 pointEnable two-factor authentication on all online accounts Ensure your name is present on the marketers’ hit lists Always give any personal information over the phone Use public Wi-Fi for sharing or accessing internet banking
Question
1.Question 1John, a threat actor, called up Johana, the IT help desk member of the targeted organization, and informed her that Mr. Tibiyani was about to give a presentation to customers but he could not open his files as they were corrupted and that Mr. Tibiyani requested him to call and ask her to send the files to him as soon as possible to start the presentation.Identify the social engineering context created by the attacker in the above scenario. 1 pointSocial proof Consensus proof Scarcity Intimidation 2.Question 2In which of the following attacks does an attacker send an email or message to the target offering free gifts such as money and software, on the condition that the user forwards the email to a predetermined number of recipients? 1 pointHoax letters Instant chat messenger Pop-up windows Chain letters 3.Question 3In which of the following techniques does an attacker execute malicious programs on a victim’s computer or server, and when the victim enters any URL or domain name, it automatically redirects the victim’s traffic to the attacker-controlled website? 1 pointImpersonation Spimming Dumpster diving Pharming 4.Question 4Abin, an attacker intending to access the critical assets and computing devices of an organization, impersonated Sally, a system administrator. Abin masquerades as Sally and gathers critical information from computing devices of the target organization. Identify the type of insider threat demonstrated in the above scenario. 1 pointNegligent insider Malicious insider Compromised insider Professional insider 5.Question 5Which of the following countermeasures can assist users in reducing the chances of identity theft? 1 pointEnable two-factor authentication on all online accounts Ensure your name is present on the marketers’ hit lists Always give any personal information over the phone Use public Wi-Fi for sharing or accessing internet banking
Solution
-
The social engineering context created by the attacker in the scenario is Impersonation. John is pretending to be someone he is not (Mr. Tibiyani) to gain access to sensitive information.
-
The type of attack where an attacker sends an email or message to the target offering free gifts such as money and software, on the condition that the user forwards the email to a predetermined number of recipients is Chain letters.
-
The technique where an attacker executes malicious programs on a victim’s computer or server, and when the victim enters any URL or domain name, it automatically redirects the victim’s traffic to the attacker-controlled website is Pharming.
-
The type of insider threat demonstrated in the scenario where Abin, an attacker intending to access the critical assets and computing devices of an organization, impersonated Sally, a system administrator, is a Compromised insider.
-
The countermeasure that can assist users in reducing the chances of identity theft is to Enable two-factor authentication on all online accounts.
Similar Questions
Question 1John was eagerly waiting to buy a new Apple phone online that was out of stock. An attacker took advantage of this situation and sent a phishing email to the target users, encouraging them to click on a link provided in the email to buy the product. John clicked on the malicious link embedded in the email and was redirected to the website controlled by the attacker. As a result, John entered his bank account details on the attacker’s website.Identify the social engineering context created by the attacker in the above scenario. 1 pointFamiliarity Authority Scarcity Intimidation 2.Question 2In which of the following phases of a social engineering attack do attackers try to reach out to disgruntled employees as they are easier to manipulate? 1 pointDevelop a relationship Select a target Exploit the relationship Research the target company
In which of the following phases of a social engineering attack do attackers try to reach out to disgruntled employees as they are easier to manipulate? 1 pointResearch the target company Develop a relationship Exploit the relationship Select a target
What technique is used in social engineering attacks?sending junk emailbuffer overflowman-in-the-middlephishingNavigation Bar
1.Question 1Fill in the blank: The four stages of a social engineering attack are to prepare, _____, use persuasion tactics, and disconnect from the target.1 pointperform open-box testingestablish trustdistribute malicious emailobtain access credentials
An executive manager went to an important meeting. The secretary in the office receives a call from a person claiming that the executive manager is about to give an important presentation but the presentation files are corrupted. The caller sternly recommends that the secretary email the presentation right away to a personal email address. The caller also states that the executive is holding the secretary responsible for the success of this presentation. Which type of social engineering tactic would describe this scenario?Question 3Select one:trusted partnersintimidationfamiliarityurgency
Upgrade your grade with Knowee
Get personalized homework help. Review tough concepts in more detail, or go deeper into your topic by exploring other relevant questions.