Australian Herald
AustralianHerald.com Tuesday 7th September 2010 Edition 2918
  • More Australia News

  • Samantha Stosur through to the US Open quarter-finals
  • James Cameron set to return to Amazon for 3D film
  • Meet the US 'black widow' who gobbles 180 chicken wings in 12 minutes
  • Kelly Osbourne hated 's**tting' herself "dry-humping" co-star in film
  • Now, a plastic that can heal itself
  • White House correspondent livetweets his heart attack saga
  • Australian jailed for killing wife of 50 years
  • Commonwealth Journalists Association's Australia chief dead
  • Australia votes the carrot as its favourite vegetable
  • Tamil Nadu XI, South Australian XI engage in friendly cricket match
  • New breed of pineapple has double Vitamin C
  • Police hunt for Indian-looking sex predator in Australia
    Get Australia News headlines emailed to you daily.

    Is 'social engineering' better than software skills to hack into computers?
    Australian Herald
    Saturday 31st July, 2010  
    (ANI)


    Hackers at DefCon are gathering to prove that smooth talk works better than software skills any day, in order to launch a computer network attack.

    The contest challenges hackers to call workers at 10 companies including technology titans Google, Apple, Cisco, and Microsoft and get them to reveal too much information to strangers.

    Other companies targeted were Pepsi, Coca Cola, Shell, BP, Ford, and Proctor and Gamble.

    One employee was conned into providing specifications regarding types of software being used, details that would let a hacker tailor viruses to launch at the system.

    "You often have to crack through firewalls and burn the perimeter in order to get into the internal organisation," News.com.au quoted Mati Aharoni of Offensive Security, a company that tests company computer defences, as saying.

    "It is much easier to use social engineering techniques to get to the same place," he added.

    "We wanted to show that social engineering is a legitimate attack vector."

    One worker nearly foiled a hacker by insisting he send his questions in an email that would be reviewed and answered if appropriate, but the hacker convinced him not to do that, saying he was under 'immense pressure'.

    "As humans, we naturally want to help other people. I'm not advocating not helping people. Just think about what you say before you say it," said Offensive Security operations manager Christopher Hadnagy. (ANI)

      Email this story to a friend

    Have your say on this story

    Your nickname (optional)
    Message