PrepAway - Latest Free Exam Questions & Answers

You are tasked to perform a penetration test. While you are performing information gathering, you find an empl

You are tasked to perform a penetration test. While you are performing information gathering, you find an employee list in Google.

You find the receptionists email, and you send her an email changing the source email to her bosss email( boss@company ). In this email, you ask for a pdf with information. She reads your email and sends back a pdf with links. You exchange the pdf links

with your malicious links (these links contain malware) and send back the modified pdf, saying that the links dont work. She reads your email, opens the links, and her machine gets infected. You now have access to the company network.

What testing metho

d did you use?

A. Social engineering

B. Tailgating

C. Piggybacking

D. Eavesdropping

Social engineering, in the context of information security, refers to psychological manipulation of people into performing actions or divulging confidential inf

ormation. A type of confidence trick for the purpose of information gathering, fraud, or system access, it differs from a traditional -con- in that it is often one of many steps in a more complex fraud scheme.

Incorrect Answers:

B: Using tailgaiting an at

tacker, seeking entry to a restricted area secured by unattended, electronic access control, e.g. by RFID card, simply walks in behind a person who has legitimate access.

References:


Leave a Reply