From the course: CompTIA PenTest+ (PT0-003) Cert Prep

Unlock this course with a free trial

Join today to access over 25,300 courses taught by industry experts.

Pretext for a social engineering attack

Pretext for a social engineering attack

From the course: CompTIA PenTest+ (PT0-003) Cert Prep

Pretext for a social engineering attack

- The first question you should ask yourself before crafting a social engineering attack is, should I use social engineering? How do I approach attacks in general and decide which ones are best? And there's a lot of different answers. And social engineering may the right answer. Oftentimes, it's easier to trick a human than it is to trick a computer. To carefully construct the right attack means to look at the softest spots. And if you find that the softest spot is the human, and you feel better about crafting social engineering attacks, that may mean that you should look there first. We know that most people wanna be helpful, so that might be a good way to get your foot in the door, so to speak. On the other hand, if you do a simple scan and you find out that they're running a really old and insecure version of Apache or IIS, that may be the place to go. So you need to ask yourselves those questions. The idea behind…

Contents