social engineering
suhtluskunst; suhtlusrünne
olemus
mittetehniline ründevahend, "inimeste häkkimine" peamiselt konfidentsiaalse või tundliku teabe saamiseks, näiteks veenev teesklus, valed, altkäemaks, hvardused
= non-technical attack tool, "human hacking" primarily to obtain confidential or sensitive information, such as convincing pretense, lies, bribes, threats
ISO/IEC 27033-3:
inimestega manipuleerimine eesmärgiga panna neid sooritama teatud toiminguid või avaldama konfidentsiaalset teavet
= act of manipulating people into performing actions or divulging confidential information
ülevaateid
https://en.wikipedia.org/wiki/Social_engineering_(security)
https://www.imperva.com/learn/application-security/social-engineering-attack/
https://www.copado.com/resources/blog/12-types-of-social-engineering-attacks-to-look-out-for
https://www.aura.com/learn/types-of-social-engineering-attacks
https://info.publicintelligence.net/UK-CERT-SocialEngineering.pdf
https://www.dogana-project.eu/images/PDF_Files/D2.1-The-role-of-SE-in-the-evolution-of-attacks.pdf
https://www.wiley.com/en-us/Social+Engineering%3A+The+Art+of+Human+Hacking-p-9780470639535
tõrje
https://www.simplilearn.com/social-engineering-attacks-article
https://mediatum.ub.tum.de/doc/1328969/1328969.pdf
http://georgeloukas.com/publications/HeartfieldLoukasCSUR2016.pdf
https://www.indusface.com/blog/10-ways-businesses-can-prevent-social-engineering-attacks/
https://www.loginradius.com/blog/identity/social-engineering-attacks/
vt ka
- manipuleerimise ründepind