Social engineering

Psychological trick to fool victims into putting themselves at risk

Social engineering encompasses a wide range of psychological techniques used by cybercriminals, spammers, phishers and malware creators to deceive and entrap potential victims.

Most spam uses some form of social engineering to lure traffic to spamvertised websites: boasts of incredible bargains, world-beating products or amazing benefits are all intended to suck people in to following the links provided. Sex, wealth and fear are by far the most common lures, along with warnings of unpaid bills or compromised banking systems. Bank phishing emails often pose as messages from the bank urging users to log into their account (via a spoofed version of the webpage) to change, confirm or update their details. Rogue anti-malware uses the fear key, warning people of spurious malware infestations on their systems and demanding money in return for cleanup functionality, while malware such as the Storm attack has taken advantage of human curiosity by promising information on the latest dramatic news stories, as well as the promise of human contact in the form of greetings cards, to attract new victims to infected web pages.

The end user is always the weakest link in the cybersecurity chain, and any motivational pressure which can be brought to bear may be exploited by cybercriminals.

Related web links

Related news articles

Storm mails bring spoof World War 3 news

US-Iran war story used as hook for malware barrage.

10 July 2008

Malware going local

Report sees trend toward greater localisation of threats.

22 February 2008

Vish implanted in phishing warning

Doctored bank alert includes phony phone number.

21 February 2008

Habbo trojan steals passwords

Extension decorates your room... with malware.

21 February 2008

Storm Valentines run under way

Seasonal spam and malware barrage gets going.

12 February 2008

  see all related news stories


Poll

Should anti-virus software be free for personal use?
Yes
No
I don't know

Leave a comment
View 43 comments

Jobs Recruit Sidebar

Jobs

In Virus Bulletin's jobs pages among others:

    Virus Bulletin currently has 144,127 registered users.