Computers |
|
| | #1 (permalink) |
| Dope Tech | Social Engineering, the USB Way by Steve Stasiukonis is VP and founder of Secure Network Technologies Inc. Special to Dark Reading JUNE 7, 2006 | We recently got hired by a credit union to assess the security of its network. The client asked that we really push hard on the social engineering button. In the past, they'd had problems with employees sharing passwords and giving up information easily. Leveraging our effort in the report was a way to drive the message home to the employees. The client also indicated that USB drives were a concern, since they were an easy way for employees to steal information, as well as bring in potential vulnerabilities such as viruses and Trojans. Several other clients have raised the same concern, yet few have done much to protect themselves from a rogue USB drive plugging into their network. I wanted to see if we could tempt someone into plugging one into their employer's network. follow link above for more
__________________ Tech IMO.com | ExtremeTech.com | ASP Free.com | SysOpt.com | Tech Support Guy.org DB Forums.com | Cyber Tech Help.com | Lazy Forums.com | Warrior Nation.net 'If you don't stand for somethin you'll fall for anything' - Dr. Dre Been there, done that |
| | |
| | #4 (permalink) |
| Contributor Join Date: Jan 2006
Posts: 432
| That is very clever. But surely, you find a usb stick... Yes, you'd check what was on it, but wouldn't you scan the contents first? I mean if it's owner was stupid enough to leave it in the car park, why would they be clever enough to have virus protection? Maybe I'm just talking with the benefit of hindsight having read the article, but if i wouldn't have scanned the contents before reading it, I will now!!
__________________ www.techonvent.net - Go there and see how awesomely awesome life can really be... |
| | |
![]() |
| Thread Tools | |
| Display Modes | |
| |