[Nulled] » Information security » Social Engineering » 💬 true story from Group IB. Social Engineering.
January 20 2023

💬 true story from Group IB. Social Engineering.

💬 true story from Group IB. Social Engineering.

The main component of phishing is that this method of attack allows us to bypass the most advanced defense systems, influencing people and their emotions so that they perform actions necessary for the attacker.
Today, we will get acquainted with the story from Group IB, about Social Engineering, greed and sudden help:

• When a customer asks to conduct a "social meeting" in the awareness format (the reaction to a letter from users is checked, and not means of protection), we know in advance that the average efficiency of such impacts (the number of users caught to the number of users who received letters) will be 20-25%. We also know that at least the same part of those who received it will not follow the links or launch the executable file, not because of alertness, but because of laziness.

• If you send another letter, the efficiency will increase significantly, if you call with a reminder of the need for a reaction, it will increase significantly. But about once a year we see a story when the effectiveness of mailing scales and confidently breaks 100%. How does this happen? Very simple. Then the recipient decides to share it with friends from other departments of the company, then the big boss will transfer it to a division controlled by him.

• The last time this happened was quite recently. A document was sent to the customer's employees with offers of discounts for the purchase of gadgets in a large retail chain. Closed affiliate sale, low prices, limited quantity — this always works.

• The user who opened the document was asked to select the positions for which he would like to find out the current prices, click on the button (in the document!) in order to allegedly get up-to-date data from the server of the trading network. When the button was clicked, the load was performed, and the user was shown a message about the temporary unavailability of the server due to a large number of requests.

• In the first hour it was quiet: not a single trigger. Then we received an email from an address that was not originally in the mailing list. The employee introduced himself as a specialist of the customer's PR department, said that one of the employees had sent him a letter, complained that the partner mailings were not coordinated with PR, said that the text of the letter contained errors and was poorly designed, and the list of recipients was generally strange and tiny. We were also informed that the text corrected by the PR people with our attachment was beautifully designed and sent to the whole company and in five minutes, the load worked for 2/3 of the company's employees. Thank you very much!

Information

Visitors who are in the group Guests they can't download files.
Log in to the site under your login and password or if you are a new user go through the process registrations on the website.

Comments:

This publication has no comments yet. You can be the first!

Information the publication:

  • Author of the publication: web3
  • Date of publication: 20 January 2023 13:40
  • Publication category(s): Information security / Social Engineering
  • Number of views of the publication: 103
  • Number of comments to the publication: 0

Related News

20 January 2023
Social Engineering
💬 true story... Social

💬 true story... Social Engineering. • Today we are talking about social engineering, namely the hacking of the

Read more
20 January 2023
Social Engineering
💬 true story... Social

💬 true story... Social Engineering. • Technical security measures practically do not reduce the risks from attacks

Read more
20 January 2023
Social Engineering
💬 true story from Group

💬 true story from Group IB. Social Engineering. • Today I have prepared for you another and interesting story from

Read more
20 January 2023
Social Engineering
💬 true story... Social

💬 true story... Social Engineering. The question is not "Will you be hacked or not?", but "How

Read more
20 January 2023
Social Engineering
💬 true story... Attack

💬 true story... Attack of the century. How to cheat Google and Facebook for hundreds of millions of dollars with

Read more

Information

Users of visitor are not allowed to comment this publication.

Site Search

Site Menu


☑ Scripts Software

Calendar

«    May 2024    »
MonTueWedThuFriSatSun
 12345
6789101112
13141516171819
20212223242526
2728293031 

Advertisement

Survey on the website

Evaluate the work of the site
 

Statistics

  • +8 Total articles 5578
  • +15 Comments 3150
  • +32 Users : 4132