social engineering
suhtluskunst; suhtlusrünne
olemus
mittetehniline ründevahend,
"inimeste häkkimine"
peamiselt konfidentsiaalse või tundliku teabe saamiseks,
näiteks
- veenev teesklus
- valed
- altkäemaks
- ähvardused
ISO/IEC 27033-3:
inimestega manipuleerimine
eesmärgiga panna neid sooritama teatud toiminguid
või avaldama konfidentsiaalset teavet
= act of manipulating people into performing actions or divulging confidential information
ülevaateid
https://en.wikipedia.org/wiki/Social_engineering_(security)
https://www.owasp.org/images/5/54/Presentation_Social_Engineering.pdf
https://info.publicintelligence.net/UK-CERT-SocialEngineering.pdf
https://www.dogana-project.eu/images/PDF_Files/D2.1-The-role-of-SE-in-the-evolution-of-attacks.pdf
https://www.mdpi.com/1999-5903/11/4/89/pdf
https://www.wiley.com/en-us/Social+Engineering%3A+The+Art+of+Human+Hacking-p-9780470639535
tõrje
https://www.simplilearn.com/social-engineering-attacks-article
https://mediatum.ub.tum.de/doc/1328969/1328969.pdf
http://georgeloukas.com/publications/HeartfieldLoukasCSUR2016.pdf
https://citeseerx.ist.psu.edu/viewdoc/download?doi=10.1.1.980.8329&rep=rep1&type=pdf
https://www.mdpi.com/1999-5903/11/4/89/pdf
https://onlinelibrary.wiley.com/doi/full/10.1002/spy2.161
vt ka
- manipuleerimise ründepind