← All ALISON Flashcard Decks

Social Engineering & Human Factor Security Flashcards

6 cards from real ALISON practice questions. Tap to flip, then mark Knew It or Still Learning — missed cards come back until you master them.

Read the first 6 Social Engineering & Human Factor Security flashcards as text
  1. Which social engineering attack involves sending fraudulent emails that appear to come from a trusted source to steal credentials?

    Answer: Phishing

    Phishing uses deceptive emails that mimic legitimate organizations to trick recipients into revealing sensitive information.

  2. What is 'pretexting' in the context of social engineering?

    Answer: Creating a fabricated scenario to manipulate a victim into revealing information

    Pretexting involves an attacker inventing a false situation or identity to gain the victim's trust and extract confidential information.

  3. Which attack technique involves following an authorized person through a secured door without using credentials?

    Answer: Tailgating

    Tailgating (or piggybacking) is a physical security attack where an unauthorized person follows an authorized individual into a restricted area.

  4. What is the primary goal of security awareness training in an organization?

    Answer: To teach employees to recognize and respond to social engineering attacks

    Security awareness training educates employees on identifying threats like phishing, pretexting, and other manipulation tactics.

  5. Which principle of influence do attackers exploit when they create a sense of urgency in phishing emails?

    Answer: Scarcity

    Scarcity and urgency pressure victims into acting quickly without thinking critically, a common manipulation tactic in social engineering.

  6. What is 'vishing' in social engineering?

    Answer: Voice-based phishing conducted over phone calls

    Vishing (voice phishing) uses phone calls where attackers impersonate trusted entities like banks or government agencies to obtain sensitive data.