eJPT Social Engineering Techniques 4 — Questions and Answers
Question 1: An attacker poses as a fire marshal and walks through an office taking photos of workstations under the guise of a 'safety inspection.' This is best described as:
- Piggybacking
- Impersonation-based physical social engineering (Correct answer)
- Dumpster diving
- Shoulder surfing
Correct answer: Impersonation-based physical social engineering
Impersonation involves assuming a false identity (e.g., fire marshal) to gain physical access and gather intelligence.
Question 2: Which tool is commonly used during penetration tests to generate convincing phishing emails and credential-harvesting pages?
- Nikto
- Social-Engineer Toolkit (SET) (Correct answer)
- Burp Suite
- Metasploit's db_nmap module
Correct answer: Social-Engineer Toolkit (SET)
The Social-Engineer Toolkit (SET) automates phishing campaigns and credential harvesting site cloning for authorized engagements.
Question 3: What does 'OSINT' stand for and how does it relate to social engineering?
- Operational Security Intelligence — used to defend against attacks
- Open Source Intelligence — used to gather target information from public sources before an attack (Correct answer)
- Offensive Social Intelligence Network Technique — used to compromise networks
- Outbound Security Information Technology — used to monitor outgoing traffic
Correct answer: Open Source Intelligence — used to gather target information from public sources before an attack
OSINT (Open Source Intelligence) involves collecting publicly available information to build detailed profiles for targeted social engineering attacks.
Question 4: A red team attacker recovers printed emails and internal memos from a company's recycling bin. This technique is called:
- Shoulder surfing
- Dumpster diving (Correct answer)
- Tailgating
- Elicitation
Correct answer: Dumpster diving
Dumpster diving involves searching through discarded materials to find sensitive information useful for crafting attacks.
Question 5: Which of the following BEST mitigates the risk of social engineering attacks targeting employees?
- Deploying a next-generation firewall
- Regular security awareness training with simulated phishing exercises (Correct answer)
- Enabling multi-factor authentication on email only
- Using only end-to-end encrypted communication tools
Correct answer: Regular security awareness training with simulated phishing exercises
Security awareness training combined with simulated phishing teaches employees to recognize and report social engineering attempts.
Question 6: What is 'elicitation' in social engineering?
- Extracting sensitive information through seemingly casual conversation without the target realizing they're being manipulated (Correct answer)
- Using software to extract password hashes from memory
- Sending forged documents to trigger an automated response
- Intercepting VoIP calls to capture credentials
Correct answer: Extracting sensitive information through seemingly casual conversation without the target realizing they're being manipulated
Elicitation uses natural conversation techniques (flattery, false statements, volunteering information) to make targets reveal sensitive data without suspicion.
Question 7: An attacker registers the domain 'paypa1.com' to deceive victims into entering PayPal credentials. This technique is called:
- DNS hijacking
- Typosquatting (Correct answer)
- Pharming
- URL redirection
Correct answer: Typosquatting
Typosquatting registers domains with slight misspellings or character substitutions to catch users who mistype legitimate URLs.
An attacker poses as a fire marshal and walks through an office taking photos of workstations under the guise of a 'safety inspection.' This is best described as: