The Art of Deception

The Art of Deception: Controlling the Human Element of Security: Mitnick
(See online!)

When I taught Operations Security to the military, contractors, at the Pentagon, and more, I told the story of Kevin Mitnick. The world's first hacker to hit the FBI's most wanted list. Able to evade capture for years because of how carelessly the FBI managed information (which gave him the advanced warning he needed to skip town).

The most important part of the story is that it wasn't his hacking skills that made him so notable; it was his fluency with dumpster diving (finding discarded product manuals for the company's core equipment), but especially social engineering.

Whenever he couldn't figure out how to bypass security, he'd call around the company asking for names, phone numbers, and terms the company used so the next person he talked to would assume he was an insider and answer almost anything. It was so simple, but ruthlessly effective because we like to share. We like to help and there's nothing wrong with that.

There's nothing wrong with being helpful - quite the opposite in fact! But the key is to know who you're talking to and never offer more than is warranted for the situation lest you be taken advantage of.

Once Kevin was released, he started a security company and published this book to help teach people how not to fall for the tricks he (and many who followed him) used. A vital part of any security-minded professional's library, The Art of Deception will show you how to defend against tricks used to convince you to violate your own security.

Tags: , , , ,

Loading...

If you want to learn more about my professional background, click here to learn more.

Check out one of my guides/tutorials:

goodbye identity theft Tutorial
|INDEX|next: Credit Freeze

Too Late!

If you've already become a victim, here is a list of things you should do.

Solving ID Theft

Lock your credit reports with a Credit Freeze to prevent credit-based ID theft (90% of ID theft risk).
Learn to protect your information to prevent not only ID theft, but many other kinds of problems (the rest of ID theft risk).

Save Time and Money

cancel credit-monitoring services.
Cancel id-theft-insurance

Who is Responsible?

Sometimes you just have to wonder why it's so easy to steal identities in the first place.

... or check out any of my other guides and tutorials by clicking here!

The Identity Theft Victim's Mini-Guide to Recovery

If you've already experienced ID theft, here are some tips of what to do next.

[Click for full description]

Credit Freeze

Setting a credit report freeze is the fastest and most effective way to actually block and reduce your risk of ID Theft. And it's free.

[Click for full description]

Out and About Defense

The best defense against non-credit ID Theft and a variety of other risks is to adopt a mindset of protection: Data Defense. Learn how to protect your information with simple and sometimes free countermeasures all based on a simple philosophy that the less people who have your information, the safer you are.

[Click for full description]