|
don
|
 |
« on: January 25, 2012, 04:27:21 PM » |
|
The first of many news items for EH-Net in 2012 is that we have a brand new columnist. You all know him from his work at OffSec and then in the field of SE with his site and book. We're excited to have Chris as part of the EH-Net family. Hope you agree. Either side you fall on, let us know what you think. Permanent link: [Article]-Top 5 Tips To Make Social Engineering Your CareerChris HadnagyOver the last year social engineering has gotten a lot of press. From the attacks on companies like Sony, HB Gary, PBS, Citibank et al to contests like the Social Engineering CTF at Defcon, it seems that social engineering has taken the front page. And rightfully so, as it is still the easiest and often most effective vector of attack. With that in mind, many people are interested in learning what it will take to either add social engineering skills to their tool chest (either personally or as part of their red team) or even become a full-time, professional social engineer. And that was the impetus behind Chris Hadnagy's new monthly column exclusively at The Ethical Hacker Network, how to become a professional social engineer. So to get the ball rolling, I compiled this Top 5 List to help each person make this a career path or at least add it to their present security practices. As we move through the coming months, we’ll explore the history, methodologies and practical experiments in attacking the human. It will not only be educational but eventually lucrative for you and your organizations. Feedback is always welcomed, Don
|
|
|
|
|
Logged
|
CISSP, MCSE, CSTA, Security+ SME
|
|
|
|
lorddicranius
|
 |
« Reply #1 on: January 25, 2012, 04:53:16 PM » |
|
Great first article! I really enjoy listening to the Social-Engineer podcast and look forward to future articles from Chris. As for free courses on psychology, there's a few over at Academic Earth from Yale, Berkeley, and UCLA: http://www.academicearth.org/subjects/psychology
|
|
|
|
|
Logged
|
GSEC, eCPPT, Sec+
|
|
|
|
Dark_Knight
|
 |
« Reply #2 on: January 25, 2012, 07:18:43 PM » |
|
|
|
|
|
|
Logged
|
|
|
|
|
|
|
don
|
 |
« Reply #4 on: January 31, 2012, 04:31:14 PM » |
|
Thanks for completing the homework assignment. ;-)
Anyone have questions of Chris or other resources for further study?
Don
|
|
|
|
|
Logged
|
CISSP, MCSE, CSTA, Security+ SME
|
|
|
|
lorddicranius
|
 |
« Reply #5 on: January 31, 2012, 05:08:06 PM » |
|
I thought of a quick question for Chris. I wanted to verify some info from his site first, but it looks like they're (.org/.com) are down at the moment  I'll check again later.
|
|
|
|
|
Logged
|
GSEC, eCPPT, Sec+
|
|
|
|
|
|
lorddicranius
|
 |
« Reply #7 on: February 02, 2012, 01:01:27 AM » |
|
Question for Chris: I've been the SE Framework posted on the social-engineer.org website, very comprehensive. How closely does the live class relate to it?
|
|
|
|
|
Logged
|
GSEC, eCPPT, Sec+
|
|
|
|
loganWHD
|
 |
« Reply #8 on: February 02, 2012, 12:30:19 PM » |
|
Thank you for the great question. The Framework is the basis for SE in my opinion. The course follows the book more closely but with practical skills throughout the 5 days.
The Framework is closely related too, but it is not an outline for the course.
Does this help?
Are you coming to the class in Seattle?
|
|
|
|
|
Logged
|
|
|
|
|
lorddicranius
|
 |
« Reply #9 on: February 02, 2012, 01:21:04 PM » |
|
Yep, answers my question! As for the Seattle class: I wish! Seeing as how I'm only 3hrs away, it's a great location, just bad timing. Funds are short at the moment  I really do hope that enough interest is shown from us west coasters for you to bring it back this way!
|
|
|
|
|
Logged
|
GSEC, eCPPT, Sec+
|
|
|
|
Solinus
|
 |
« Reply #10 on: February 29, 2012, 08:55:38 AM » |
|
Great article! Glad to see the writer added to the list of excellence here at EH Network. I look forward to reading future columns. I purchased his book as soon as it hit the market. Truly one of a kind; an excellent read! I dream of taking a course like his someday, but we in the northeast are on the forgotten list when it comes to great speakers and courses. Will glean what I can from these columns.
|
|
|
|
« Last Edit: February 29, 2012, 08:59:05 AM by Solinus »
|
Logged
|
Kerry MCITP:EA | MCTS(x5) | MCSA+ | MCSE+ | Security + | CCNA | WCSP | DSCE | PCT |CIW Security Analyst | CSSA
|
|
|
|
loganWHD
|
 |
« Reply #11 on: June 01, 2012, 08:49:43 PM » |
|
Where in the NE are you?
|
|
|
|
|
Logged
|
|
|
|
|
3xban
|
 |
« Reply #12 on: June 02, 2012, 09:40:26 PM » |
|
Solinus, depending on where you are, there are a few Bsides events that take place not to mention SchmooCon in DC. We had a BSides in Meriden, CT last year as well as a 2nd event that followed the Bsides event - ExCon. One of those will be coming back next year. There is also Rochester Bsides and every so often Boston BSides. I made the trip down to Delaware for their BSides 2 years in a row. For a free Con, it is worth the gas money to travel. We definitely have our events on this side of the country, you just need to keep an eye out. I think there can always be more though 
|
|
|
|
|
Logged
|
Certs: GCWN (@)Dewser
|
|
|
|
loganWHD
|
 |
« Reply #13 on: June 02, 2012, 09:42:02 PM » |
|
I plan on running one of my courses in DC/MD area. Prolly not till 2013, but it will happen.
|
|
|
|
|
Logged
|
|
|
|
|