This article is about a security firm, they were given the job of testing a company out but knew the employees had become aware that the testing vector would be social engineering.
The testing firm scattered USB keyfobs in the smoking room, coffee areas and car park, the devices would phone home when inserted into the companies network. All of the ones found were plugged into the company network executing the security firms trojan.
This shows us two things:
Social engineering is still the largest threat even when people are on their guard
Companies need to protect USB slots
Both of these lessons need drumming into many companies. Including the one I work for. I’ve highlighted the piece up the management chain in my work so now it’s a case of waiting until either the right person sees it and it gets actioned or the wrong person sees it and it’s killed.
0 responses so far ↓
There are no comments yet...Kick things off by filling out the form below.
Leave a Comment