An employee in the finance department receives an email, which appears to come from the Chief Financial Officer (CFO), instructing the employee to immediately wire a large sum of money to a vendor.
Which of the following BEST describes the principles of social engineering used? (Choose two.)
Click on the arrows to vote for the correct answer
A. B. C. D. E.CD.
The principles of social engineering refer to the techniques used by attackers to manipulate people into performing actions or divulging sensitive information. In this scenario, the attacker has impersonated the CFO to convince an employee in the finance department to wire a large sum of money to a vendor. Two principles of social engineering used in this scenario are Urgency and Authority.
Urgency: The attacker has created a sense of urgency in the email, instructing the employee to immediately wire the money to the vendor. This urgency could cause the employee to act quickly without thoroughly verifying the request, thereby bypassing normal security procedures.
Authority: The attacker has impersonated the CFO, a senior executive in the organization, and used the authority associated with that role to convince the employee to take the requested action. This authority could cause the employee to overlook any suspicious aspects of the email and comply with the request.
Therefore, the BEST principles of social engineering used in this scenario are Urgency and Authority.