wayground logo

Free Printable Worksheets

Font size

S
M
L
XL
Worksheets

Social Engineering

Total questions: 11

Worksheet time: 8mins

Name
Class
Date
1.

What type of Social Engineering is the following scenario?

Sarah, an avid online shopper, decides to browse her favourite e-commerce website to purchase a new laptop. She enters the website's URL into her browser and eagerly awaits the familiar homepage to load. Unbeknownst to Sarah, a pharming attack has compromised the website's DNS infrastructure, redirecting her to a fraudulent version of the site.

The fake website closely mimics the legitimate e-commerce platform, displaying enticing offers and showcasing a wide range of products. Sarah, believing she is on the genuine website, proceeds to search for the desired laptop model. She adds the product to her cart and proceeds to the checkout page.

At the checkout, Sarah enters her personal and payment information, including her name, address, credit card details, and security code. Unaware that the website is fraudulent, she trusts that her transaction is secure and submits the information.

a)

Phishing

b)

Pharming

c)

Shouldering

2.

Which of the following is not a social engineering technique?

a)

Blagging

b)

Hacking

c)

Phishing

d)

Pharming

3.

Which form of Social Engineering is the following scenario?

Emma, a diligent online banking customer, receives an email in her inbox that appears to be from her bank, prompting her to update her account information urgently. The email is convincingly designed, using the bank's logo and colors, and the sender's address seems legitimate at first glance. The message creates a sense of urgency, stating that failure to update her account details within 24 hours will result in the suspension of her online banking services.

In a state of mild panic, Emma clicks on the provided link, which takes her to a website that looks almost identical to her bank's official site. She is greeted with a login page that requests her username, password, and other personal details. The page includes reassuring statements about enhanced security measures to alleviate any suspicions Emma may have.

a)

Phishing

b)

Pharming

c)

Shouldering

4.

Which of the following would probably not help to prevent phishing?

a)

Train employees on security procedures

b)

Set up an auto-reply for e-mails received when you are on holiday

c)

Block e-mails from unknown senders

d)

Investigate content of e-mails to determine trustworthiness

5.

What type of Social Engineering is the following scenario?

She enters the bustling establishment, finds an empty seat at a corner table, and unpacks her laptop and documents.

Unbeknownst to Emma, an individual named Mark, who is sitting at a nearby table, has malicious intentions. Mark carefully observes Emma as she sets up her workspace. He notices that she occasionally glances at her phone, where she has confidential work-related emails and documents open.

Taking advantage of the crowded environment, Mark positions himself strategically, ensuring that he has a clear line of sight to Emma's phone. He waits for the right moment to strike.

As Emma reaches for her coffee, Mark swiftly leans over, pretending to adjust his belongings, and glances at her phone screen. In just a few seconds, he manages to capture critical information from one of Emma's work emails, including client names, project details, and financial figures.

a)

Phishing

b)

Pharming

c)

Shouldering

6.

Which of the following would best protect against pharming?

a)

Use of e-mail filters

b)

Use of web filters

c)

Using biometric passwords

d)

Disabling USB storage devices

e)

Wearing 3D glasses

7.

What type of Social Engineering is the following scenario?

Sarah, an avid online shopper, receives an email in her inbox promoting a limited-time offer from a popular online retailer. The email includes eye-catching graphics and a persuasive message, enticing Sarah with a significant discount on her favorite brand of shoes. Excited about the opportunity, she clicks on the provided link to explore the offer further.

The link takes Sarah to a website that closely resembles the online retailer's official site. The page displays the same branding, product images, and layout, creating a convincing illusion of legitimacy. Sarah selects the desired shoes, adds them to her cart, and proceeds to the checkout page.

On the checkout page, she is prompted to enter her personal and payment information, including her full name, address, credit card details, and security code. The page reassures her that the data will be securely processed, employing security logos and trust seals to further instill confidence.

a)

Phishing

b)

Pharming

c)

Shouldering

8.

Which of the following describe 'Social engineering'?

a)

Confusing people so they give-up information

b)

Manipulating people to give-up information

c)

Assaulting people so they give up information

d)

Paying people so they give-up goods and services

9.

What type of social engineering is the following scenario?

Amy, a busy commuter, is waiting at a crowded train station during rush hour. She takes out her smartphone to check her work emails while standing in a designated waiting area. Unbeknownst to her, a shoulder surfer named Mark is strategically positioned nearby, looking for an opportunity to exploit.

As Amy scrolls through her emails, Mark discreetly positions himself close enough to observe her screen without arousing suspicion. With quick glances, he manages to gather sensitive information, including client names, project details, and upcoming business meetings.

Amy, engrossed in her emails and the hustle and bustle of the station, remains unaware that she is being targeted in a shouldering attack. Mark captures valuable information without her knowledge, all while blending into the busy environment.

a)

Phishing

b)

Pharming

c)

Shouldering

10.

Which of the following people should you share your password with when they ask?

a)

Network managers

b)

Call centre workers

c)

Security experts

d)

Company managers

e)

Nobody

11.

What type of Social Engineering is the following scenario?

Lisa, a diligent online banking customer, types in the web address of her bank's official website into her browser's address bar and hits Enter. However, unbeknownst to her, a pharming attack has taken place, redirecting her to a malicious website designed to mimic her bank's legitimate site.

The fraudulent website, indistinguishable from the real one, prompts Lisa to enter her login credentials and other personal information to access her online banking account. Trusting the website's appearance and unaware of the pharming attack, Lisa unsuspectingly enters her username, password, and other requested details, believing she is securely accessing her account.

Meanwhile, behind the scenes, the attackers responsible for the pharming attack have hijacked the DNS (Domain Name System) or manipulated Lisa's DNS settings. As a result, any attempt to visit the legitimate website is redirected to the fraudulent site, capturing sensitive information in the process.

a)

Phishing

b)

Pharming

c)

Shouldering