Internet Security

What is social engineering? Definition, types, attack techniques

Check out the on-demand sessions from the Low-Code/No-Code Summit to learn how to successfully innovate and achieve efficiency by upskilling and scaling citizen developers. Watch now. Table of contentsWhat is social engineering?Types of social engineering techniques and methods10 top best practices to detect and prevent social engineering attacks in 2022 Social engineering is the very…

Check out the on-demand sessions from the Low-Code/No-Code Summit to learn how to successfully innovate and achieve efficiency by upskilling and scaling citizen developers. Watch now.


Table of contents

  • What is social engineering?
  • Types of social engineering techniques and methods
  • 10 top best practices to detect and prevent social engineering attacks in 2022

Social engineering is the very common practice of exploiting a human element to initiate and/or execute a cyberattack. 

Human weakness and ignorance present such easy targets that fully 82% of the attacks in Verizon’s 2022 Data Breach Investigations Report were perpetrated, at least in part, via some form of social engineering.

In this article, we look at the forms of social engineering that are frequently used and best practices for limiting its effectiveness within the enterprise.

What is social engineering?

A dictionary definition of social engineering (in the context of cybersecurity) is “the use of deception to manipulate individuals into divulging confidential or personal information that may be used for fraudulent purposes.” 

Event

Intelligent Security Summit

Learn the critical role of AI & ML in cybersecurity and industry specific case studies on December 8. Register for your free pass today.

Register Now

At the most basic, this includes the mass-market spamming of individual email accounts with a phishing attempt such as an offer for a free gift certificate from a well-known retailer. Consumers who click a link to a malicious website or open an infected file attachment and enter personal information may open themselves up to criminal exploitation.

For higher-value, enterprise targets, the technique can become quite a bit more elaborate — or remain stunningly simple.

Roger Grimes, data-driven defense evangelist at security awareness training vendor KnowBe4, calls it for what it is: a con, a scam. “It’s someone pretending to be a brand, company or person you would … trust more than if you know the message was being sent by a complete stranger trying to trick you into doing something that will impact you or your organization’s own interests,” he explained. “The desired actions are often to launch a malicious program, provide logon passwords, or to provide confidential content (e.g., social security number, banking information, etc.).” 

The criminal uses psychological manipulation to trick the user into performing actions or divulging confidential information. Seven means of persuasive appeal, as outlined by Robert Cialini in Influence: The Psychology of Persuasion, are commonly cited in explaining why people are vulnerable to their application in social engineering:

  • Reciprocity
  • Scarcity
  • Authority
  • Liking
  • Commitment
  • Consensus
  • Unity

Many social engineering attempts come via email, but that is not the only channel. Social engineering is also accomplished via SMS messages, websites, social media, phone calls or even in person. 

As Manos Gavriil, head of content at hacking training firm Hack The Box, points out, “Social engineering is considered the number one threat in cybersecurity, as it exploits individual human error, which makes it very hard to stop, and even the simplest forms of attack can have a devastating impact.”

Types of social engineering techniques and methods

Social engineering is accomplished in a variety of ways:  

  • Pretexting: This involves the false presentation of identity or context to make a target believe they should share sensitive data or take a compromising action, and it is an element in most social engineering.
  • Baiting: The adversary usually offers a fake promise of something to deceive the victim, steal sensitive information or infect the organization with malware.
  • Phishing: The attacker sends out large volumes of emails, without a specific target in mind, in the hope that a malicious link or attachment will be clicked to give the attacker access to sensitive information. 
  • Spear phishing: Masq

Read More

Be the first to write a comment.

Leave a Reply

Your email address will not be published. Required fields are marked *

Internet Security

Taoiseach warns that US airport security demand for access to five years of social media activity is ‘unworkable’

Taoiseach Micheál Martin hailed US president Donald Trump as “a sensible guy” as he warned a US demand for access to five years of social media activity as part of American visa screening was simply unworkable…

Taoiseach Micheál Martin hailed US president Donald Trump as “a sensible guy” as he warned a US demand for access to five years of social media activity as part of American visa screening was simply unworkable…
Read More

Continue Reading
Internet Security

Obasanjo: Nigeria’s Insecurity Has Been Weaponised 

AFRICAN EXAMINER) – Former President Olusegun Obasanjo has described Nigeria’s prolonged fight against Boko Haram as an “industry,” noting that the insurgency has lasted far longer than the country’s 1967–1970 civil war. Obasanjo made the remarks on Sunday during the Toyin Falola Interviews, a conversation livestreamed on social media…

AFRICAN EXAMINER) – Former President Olusegun Obasanjo has described Nigeria’s prolonged fight against Boko Haram as an “industry,” noting that the insurgency has lasted far longer than the country’s 1967–1970 civil war. Obasanjo made the remarks on Sunday during the Toyin Falola Interviews, a conversation livestreamed on social media…
Read More

Continue Reading
Internet Security

GTA responds to viral video alleging kidnap and extortion of visiting Black Americans

The Ghana Tourism Authority (GTA) has responded to a video circulating on social media in which some visiting Black Americans claim they were kidnapped and extorted by individuals believed to be police officers. In a statement, the Authority explained that the Ghana Police Service and the Cyber Security Authority have begun full investigations into the

The Ghana Tourism Authority (GTA) has responded to a video circulating on social media in which some visiting Black Americans claim they were kidnapped and extorted by individuals believed to be police officers. In a statement, the Authority explained that the Ghana Police Service and the Cyber Security Authority have begun full investigations into the …
The post GTA responds to viral video alleging kidnap and extortion of visiting Black Americans appeared first on Ghanaian Times…
Read More

Continue Reading
Internet Security

Mono Protocol presale updates: how blockchain usability and chain abstraction are redefining Web3 crypto presales

Mono Protocol steps into this environment with solutions designed to reduce friction and make multi-chain activity easier. Mono Protocol recently passed its full smart contract audit with CertiK, a widely respected blockchain security firm. The Mono Protocol presale continues to see strong participation, bringing the total raised to $3.75M so far. Many users still struggle


  • Mono Protocol steps into this environment with solutions designed to reduce friction and make multi-chain activity easier.
  • Mono Protocol recently passed its full smart contract audit with CertiK, a widely respected blockchain security firm.
  • The Mono Protocol presale continues to see strong participation, bringing the total raised to $3.75M so far.

Many users still struggle with the complexity of blockchain transactions, cross-chain tools, and fragmented web3 experiences.

These challenges affect adoption across the wider crypto presale space and limit how people interact with DeFi platforms.

As demand rises, users look for the next potential big presale crypto that solves these everyday issues.

Mono Protocol steps into this environment with solutions designed to reduce friction and make multi-chain activity easier.

Interest in the presale crypto stage has continued to grow as the project gains visibility across the crypto presale list and broader cryptocurrency presale discussions.

Blockchain usability and chain abstraction are redefining Web3

The shift toward better usability is becoming essential across the top presale crypto market.

Many teams building in blockchain face similar issues: complex infrastructure, confusing routing, and high development costs.

Mono tackles these challenges by offering tools that let developers build apps that just work.

This direction supports the growing interest in new crypto presale platforms focused on function instead of noise.

Developers save time and reduce expenses because they no longer need to build cross-chain infrastructure from scratch.

The system manages routing and execution so teams can focus on product design and quicker shipping.

This aligns with trends seen across crypto ICO presale discussions as builders aim to create smoother user experiences.

Mono also introduces transaction fee configuration, helping teams generate revenue while offering users dependable execution and MEV protection.

As web3 adoption grows, this type of clean, reliable process supports the rise of strong presale ICO projects and helps shape what the community expects from a next potential big presale crypto.

Rewards hub that simplifies earning in the crypto presale journey

Mono’s Rewards Hub acts as the central space where users complete tasks during the presale crypto stage.

It includes social quests, referral steps, and presale challenges that reward participants with promo codes.

These codes can be redeemed for bonus MONO once connected through a supported wallet, giving users a simple path to engage with the presale process.

The clear structure helps new users navigate web3 interactions without confusion.

By making each step easy to follow, the system supports growth across cryptocurrency presales and gives users an active role in the process.

This approach has made Mono stand out among crypto presale projects that aim to streamline participation.

As users complete quests and claim their promo codes, bonuses are delivered directly as MONO.

This strengthens involvement within the top presale crypto market and shows how clean design can improve presale experience across the broader blockchain ecosystem.

CertiK audit complete

Mono Protocol recently passed its full smart contract audit with CertiK, a widely re

Read More

Continue Reading