Avoiding The Social Engineering Hangover

No ratings

Presented at Security B-Sides Detroit 2012 by

What\'s this? Another presentation on social engineering? Another "you\'re doing it wrong"? Well, this one is different. Much as penetration testing has evolved beyond poppin\' boxes and gatherin\' shells, social engineering must evolve past trickin\' people and takin\' names. The engagement must be properly scoped and match the needs of the business. Each specific task must be planned so it doesn\'t derail, and the ultimate targets (data, access, etc.) must be defined before testing begins. Social engineering engagements, like a night on the town, can have consequences. Learn how to organize and present your findings in a way that is consumable by executives and non-IT staff and avoid the social engineering hangover.