官术网_书友最值得收藏!

Tailgating 

Tailgating (also known as piggybacking) is a form of physical social engineering. Tailgating can be defined as a physical security breach where an unauthorized person follows an authorized person into a secure area. 

A common type of tailgating would be someone waiting around a common area with their hands full for an authorized person to open an access-controlled door. During this time, the unauthorized person could ask them to hold the door open while they rush through. Some other forms might include striking up conversations with employees at a common smoking area. By the time the employee has completed smoking, he or she will likely hold the door open for you, masquerading as an employee. Humans have common courtesy, which can lead to vulnerabilities, such as holding doors open for unauthorized people.

Some organizations have good physical security in place, so this might not work everywhere. However, performing sufficient information gathering on the target's physical security will help you plan your attack.

As you perform penetration testing, you can leverage any of the preceding techniques within your penetration test. Having a good background understanding of what each technique entails will help you plan your penetration test more effectively.

主站蜘蛛池模板: 怀安县| 锦州市| 任丘市| 浙江省| 沛县| 东辽县| 阿巴嘎旗| 巴里| 衡南县| 同德县| 洱源县| 扎囊县| 宜城市| 辽源市| 罗江县| 诸城市| 望都县| 平果县| 关岭| 桑植县| 富裕县| 三门峡市| 深水埗区| 钟祥市| 大关县| 怀安县| 三都| 抚顺县| 万载县| 高台县| 巴林右旗| 临潭县| 鹿泉市| 延寿县| 色达县| 亚东县| 天峻县| 宣武区| 通辽市| 平遥县| 河西区|