Wireless technology

Avoding social engineering and phising attaks


Social engineering attack

Social engineering attack is the technique that is used for attacking the certain body; in this technique of attacking the attackers used human interactions and social relationships and skill for targeting the organization or its computerized systems. attackers may also present themselves as new employee or seeking identity, researcher or it can also claims to be the supported identity, in this way he /she would be able to gather the confidential pieces of information, they can also penetrate into the organization setup and contaminate the whole working network. Another thing which he /she can do is that they can take the creditability of the other persons.

 

Phishing attack

 

Phishing attack is the type pf social engineering .it use email service or malicious website and pose itself as a reputable organization and solicit your personal information for instance an attacker may send information to you by email as a credit company or financial institute in order to request you an account information or they may suggest .when users respond to these kinds of emails the attackers get access to their account and after wards control their accounts. phisihing attack can come form different kinds of organization or charity firms too. Online attacker may also take full benefit of currently occurring events, happenings or hot issues such as

 

  • Natural disasters (Katrina, earthquakes)
  • Health care or epidemic protection (NGEos, fund raisers)
  • Economic bodies
  • Major political election campaigns
  • Vacations and holidays.

 

How to protect your self from engineering and phishing attacks

 

  • Be aware of unsolicited phone calls, visits or email messages from individual employees or other internal information, if some unknown person clams to be the part of the organization then doesn’t suddenly trust that entity without verifying the direct relation of that entity with organization.
  • Don’t provide any kind of personal information of the organization and yourself. Especially those which require the organizations network and structure, only provide this sensitive information only when you are sure about the person.
  • It’s also recommended never to reveal you financial information in email messages and try to avoid the emails that contain different attractive links.
  • Always check the certificate and privacy policy of the organization or company claiming something beneficial for you. it the policy is unclear never trust the website.
  • Always see actively the URL (universal Resource Locator) of the website. The malicious websites may us the identical address of the legitimate websites. They can also use variation in the domain names.
  • If you are not sure about the email that whether it’s from the legitimate body or not, then immediately contact the company. Don’t use the contacted information provide in the link attached to the email request, check the statement received before for the contact.
  • Install and maintain regularly the trustful anti virus soft wares, it is also recommended that firewalls and email filtering software are also very helpful in keeping ways social engineering attacks and phishing attacks. Email filters blocks the way of some traffic.
  • You can also take the advantage of the anti phishing features that can be offered by the web browser or email clients. Getting cured from phishing attack
  • If you really think that you are the victim of the phishing attack then immediately report it to the authorized bodies of the organization involving network administrators.
  • Don’t waste a minute and immediately change you accounts passwords and delete all the confidential and authenticated information provided in your accounts
  • Look out for the identity theft symptoms too






Share
Related Articles
- What is spyware






Join us at:

facebook group Twitter