.

[Article]-Column 0: Human Exploitation 101

<<

don

User avatar

Administrator
Administrator

Posts: 4226

Joined: Sun Aug 28, 2005 10:47 pm

Location: Chicago

Post Wed Sep 10, 2008 11:27 pm

[Article]-Column 0: Human Exploitation 101

I'm very proud to have Mike Murray on board as our newest columnist. You can see his bio and all of his EH-Net articles HERE. Of course there's only one for the moment, but that shall change quickly.

Permanent link: [Article]-Column 0: Human Exploitation 101


Image


So, this is my first column for EthicalHacker.net.  I'm quite excited, as I have spent a whole lot of years exploring penetration testing, vulnerability research and exploit writing, and most of the past couple of years working on exploiting people.

When I use that term, I'm not talking about how to open a third-world sweat shop.  While "human exploitation" tends to fall under the traditional heading of "social engineering," that term has been beaten to death of late. For example, the top five articles in my "social engineering" Google News RSS feed as I write this refer to phishing, social network sites, and three different products claiming to protect against all manner of malware.

Unfortunately, this isn't the type of social engineering I'm going to write about in most of these columns.  And I'm not going to talk about lock-picking, breaking into buildings, or any of the other "No Tech Hacking" type of stuff that Johnny Long and others have made famous over the past couple of years. Nope - this is going to be all about dealing face-to-face (or voice-to-voice or text-to-text) with real live people and exploiting the natural tendency to trust. 



Enjoy and as with everything else on EH-Net, feel free to make comments, suggestions and requests.

Don
CISSP, MCSE, CSTA, Security+ SME
<<

jason

User avatar

Hero Member
Hero Member

Posts: 1013

Joined: Sat Jun 21, 2008 6:23 pm

Location: USA

Post Tue Sep 30, 2008 4:50 pm

Re: [Article]-Column 0: Human Exploitation 101

Interesting column. I look forward to seeing what a 0-day exploit against a person is. BTW, when looking at the column, it's not attributed to Mike (or anyone).
<<

Kev

Sr. Member
Sr. Member

Posts: 428

Joined: Sat Sep 29, 2007 12:26 pm

Post Sat Oct 04, 2008 11:54 am

Re: [Article]-Column 0: Human Exploitation 101

Good write up so far.  As security advances technically, this will be the biggest target in the future.  It is certainly where Mitnick puts a lot of his focus.
<<

jason

User avatar

Hero Member
Hero Member

Posts: 1013

Joined: Sat Jun 21, 2008 6:23 pm

Location: USA

Post Sat Nov 01, 2008 10:20 pm

Re: [Article]-Column 0: Human Exploitation 101

When's the next one Mike?
<<

mmurray

User avatar

Newbie
Newbie

Posts: 17

Joined: Fri Jul 25, 2008 11:03 am

Location: Fremont, CA

Post Wed Dec 03, 2008 4:06 am

Re: [Article]-Column 0: Human Exploitation 101

Sorry Jason.. I've been slow on the writing.

I've got a bunch of upcoming articles based on the stuff in the initial one - it's a matter of cleaning it up for EH.net consumption, not just my crazy scribbled notes in margins of book.  (Sometimes, I feel like Fermat.  Though I doubt anybody would spend hundreds of years trying to prove my random ideas).

Look for a new one soon... :-)
--
Mike Murray
MAD Security / The Hacker Academy

Email - mmurray@thehackeracademy.com
Phone - 773-360-0658
Twitter: http://www.twitter.com/mmurray
<<

jason

User avatar

Hero Member
Hero Member

Posts: 1013

Joined: Sat Jun 21, 2008 6:23 pm

Location: USA

Post Wed Dec 03, 2008 8:53 am

Re: [Article]-Column 0: Human Exploitation 101

I'll keep an eye out :)

Return to Murray

Who is online

Users browsing this forum: No registered users and 0 guests

cron
.
Powered by phpBB® Forum Software © phpBB Group.
Designed by ST Software