It is often neither security loopholes nor password cracking that allow people access our private information on Facebook without our approval. It’s actually our own human nature: the trust of a friend’s name.
Whether you like Facebook or not, the truth remains that Facebook is one of the best mainstream websites around when it comes to providing options with which you can protect your privacy. Every time anyone discovers a new method for hacking private information, the guys at Facebook patch it the next day. What their security engineers cannot do though is teach the users to tell a social engineer apart from a friend.
And that’s why you need to be aware of this: the easiest way to hack Facebook today is by borrowing a chapter from psychology class. Hackers are not hacking as programmers anymore, they’re hacking as social engineers.
Huh?
Schmuck will steal the identity of Buddy, by creating a profile with the same username and profile picture. He will then send friend requests to the mutual friends between you and Buddy (excluding yourself) and pretend that his original account was hacked.
Schmuck now starts the process of collecting confirmed friend requests.
Whether you like Facebook or not, the truth remains that Facebook is one of the best mainstream websites around when it comes to providing options with which you can protect your privacy. Every time anyone discovers a new method for hacking private information, the guys at Facebook patch it the next day. What their security engineers cannot do though is teach the users to tell a social engineer apart from a friend.
And that’s why you need to be aware of this: the easiest way to hack Facebook today is by borrowing a chapter from psychology class. Hackers are not hacking as programmers anymore, they’re hacking as social engineers.
Huh?
Using Social Engineering to Hack Facebook
The hacker wearing his social engineer shoes will probably do something like this:1. Learn Who Your Friends Are and Collect Them
If your friend list is public, this social hacker, who we will call “Schmuck”, will first familiarize himself with your friend list. Then, he will choose a friend of yours, which we will call “Buddy”, who has enough mutual friends with you.Schmuck will steal the identity of Buddy, by creating a profile with the same username and profile picture. He will then send friend requests to the mutual friends between you and Buddy (excluding yourself) and pretend that his original account was hacked.
Schmuck creates an account with Buddy's identity
0 comments:
Post a Comment