SECURE&TIP: SOCIAL ENGINEERING

This entry is also available in:

Hello,

Every day we make dozens of decisions, such as opening an email, replying to a message, or answering a call. In most cases, these are legitimate, but some have a very specific goal: to influence our decisions.

Cybercriminals don’t just seek to exploit technology; they also seek to manipulate us into revealing information, sharing access, or taking actions we wouldn’t normally take.

We refer to this as social engineering.

Although the methods may vary, there are usually some common red flags, so be wary of unexpected requests, messages that convey a sense of urgency, requests for sensitive information, or actions that must be taken immediately.

If something is pressuring you to act quickly, it’s time to stop and check.

You know, always verify the information through an alternative source, and never act solely because of the urgency of the message.

Stop, think, and check.

Because when it comes to social engineering, a few seconds of verification can prevent serious consequences.

Think before you act—social engineering preys on decisions.

 

IMPORTANT NOTE:

If, despite complying with all these measures, you encounter situations that do not conform to the level of security required or established in internal policies, do not hesitate to inform your line manager, the Security Manager, security personnel and/or the IT department, depending on the type of suspicion.

If it happens to you on a personal level, report it directly to the police authorities, so that they can give you appropriate advice and conduct an investigation.