Font size
WorksheetsSocial Engineering
Total questions: 11
Worksheet time: 8mins
What type of Social Engineering is the following scenario?
Sarah, an avid online shopper, decides to browse her favourite e-commerce website to purchase a new laptop. She enters the website's URL into her browser and eagerly awaits the familiar homepage to load. Unbeknownst to Sarah, a pharming attack has compromised the website's DNS infrastructure, redirecting her to a fraudulent version of the site.
The fake website closely mimics the legitimate e-commerce platform, displaying enticing offers and showcasing a wide range of products. Sarah, believing she is on the genuine website, proceeds to search for the desired laptop model. She adds the product to her cart and proceeds to the checkout page.
At the checkout, Sarah enters her personal and payment information, including her name, address, credit card details, and security code. Unaware that the website is fraudulent, she trusts that her transaction is secure and submits the information.
Phishing
Pharming
Shouldering
Which of the following is not a social engineering technique?
Blagging
Hacking
Phishing
Pharming
Which form of Social Engineering is the following scenario?
Emma, a diligent online banking customer, receives an email in her inbox that appears to be from her bank, prompting her to update her account information urgently. The email is convincingly designed, using the bank's logo and colors, and the sender's address seems legitimate at first glance. The message creates a sense of urgency, stating that failure to update her account details within 24 hours will result in the suspension of her online banking services.
In a state of mild panic, Emma clicks on the provided link, which takes her to a website that looks almost identical to her bank's official site. She is greeted with a login page that requests her username, password, and other personal details. The page includes reassuring statements about enhanced security measures to alleviate any suspicions Emma may have.
Phishing
Pharming
Shouldering
Which of the following would probably not help to prevent phishing?
Train employees on security procedures
Set up an auto-reply for e-mails received when you are on holiday
Block e-mails from unknown senders
Investigate content of e-mails to determine trustworthiness
What type of Social Engineering is the following scenario?
She enters the bustling establishment, finds an empty seat at a corner table, and unpacks her laptop and documents.
Unbeknownst to Emma, an individual named Mark, who is sitting at a nearby table, has malicious intentions. Mark carefully observes Emma as she sets up her workspace. He notices that she occasionally glances at her phone, where she has confidential work-related emails and documents open.
Taking advantage of the crowded environment, Mark positions himself strategically, ensuring that he has a clear line of sight to Emma's phone. He waits for the right moment to strike.
As Emma reaches for her coffee, Mark swiftly leans over, pretending to adjust his belongings, and glances at her phone screen. In just a few seconds, he manages to capture critical information from one of Emma's work emails, including client names, project details, and financial figures.
Phishing
Pharming
Shouldering
Which of the following would best protect against pharming?
Use of e-mail filters
Use of web filters
Using biometric passwords
Disabling USB storage devices
Wearing 3D glasses
What type of Social Engineering is the following scenario?
Sarah, an avid online shopper, receives an email in her inbox promoting a limited-time offer from a popular online retailer. The email includes eye-catching graphics and a persuasive message, enticing Sarah with a significant discount on her favorite brand of shoes. Excited about the opportunity, she clicks on the provided link to explore the offer further.
The link takes Sarah to a website that closely resembles the online retailer's official site. The page displays the same branding, product images, and layout, creating a convincing illusion of legitimacy. Sarah selects the desired shoes, adds them to her cart, and proceeds to the checkout page.
On the checkout page, she is prompted to enter her personal and payment information, including her full name, address, credit card details, and security code. The page reassures her that the data will be securely processed, employing security logos and trust seals to further instill confidence.
Phishing
Pharming
Shouldering
Which of the following describe 'Social engineering'?
Confusing people so they give-up information
Manipulating people to give-up information
Assaulting people so they give up information
Paying people so they give-up goods and services
What type of social engineering is the following scenario?
Amy, a busy commuter, is waiting at a crowded train station during rush hour. She takes out her smartphone to check her work emails while standing in a designated waiting area. Unbeknownst to her, a shoulder surfer named Mark is strategically positioned nearby, looking for an opportunity to exploit.
As Amy scrolls through her emails, Mark discreetly positions himself close enough to observe her screen without arousing suspicion. With quick glances, he manages to gather sensitive information, including client names, project details, and upcoming business meetings.
Amy, engrossed in her emails and the hustle and bustle of the station, remains unaware that she is being targeted in a shouldering attack. Mark captures valuable information without her knowledge, all while blending into the busy environment.
Phishing
Pharming
Shouldering
Which of the following people should you share your password with when they ask?
Network managers
Call centre workers
Security experts
Company managers
Nobody
What type of Social Engineering is the following scenario?
Lisa, a diligent online banking customer, types in the web address of her bank's official website into her browser's address bar and hits Enter. However, unbeknownst to her, a pharming attack has taken place, redirecting her to a malicious website designed to mimic her bank's legitimate site.
The fraudulent website, indistinguishable from the real one, prompts Lisa to enter her login credentials and other personal information to access her online banking account. Trusting the website's appearance and unaware of the pharming attack, Lisa unsuspectingly enters her username, password, and other requested details, believing she is securely accessing her account.
Meanwhile, behind the scenes, the attackers responsible for the pharming attack have hijacked the DNS (Domain Name System) or manipulated Lisa's DNS settings. As a result, any attempt to visit the legitimate website is redirected to the fraudulent site, capturing sensitive information in the process.
Phishing
Pharming
Shouldering
