SE

Search for:


Archive for January, 2011

Is SE The Worst Security Threat?

Monday, January 10th, 2011

The social engineering polls have been getting a lot of interest each month.  Last month we asked you to tell us if you think Social Engineering is the worst security threat to corporations.  If you decided that social engineering is NOT the worst security threat, we asked you to tell us what it is that you think could be worse.

The response was overwhelming on how many came in to vote.  Although the majority voted YES, here are some of the other ideas given that where worse:

  • unconscious sysadmins
  • zombie attacks
  • Management negligence to information related risks and lack of well prepared information security staff.
  • CSI Reports malware as highest number of attacks
  • end users
  • Aliens
  • lazy and/or incompetent sysadmins/IT dept
  • Droptable commands or database shutdowns through SQL injection. SE is an important threat. But not necessarily the most direct one.
  • Well, with cellular and wifi devices present in this day and age, they now are truly much more exploitative of commercial and social entities now in ways that overstep the need for social engineering where it would have been used if these devices didn’t exist today.
  • Another Russian Revolution is a greater threat to corporations, although much less likely.  Social Engineering is the most serious viable security threat to corporations however.
  • the employees are the biggest threat if they let the ball drop and allow the SE in

Well as humorous as those things are, some of them, lets take a look at the stats.

First our Male and Female ratio shows that we need the ladies in the SE world to start taking a share more:

Male Female 300x177 Is SE The Worst Security Threat?

Then of course, as I already mentioned the percentage of the Yes’ outweighed the No’s, but here is the chart:

Yes No 300x180 Is SE The Worst Security Threat?

Overall 86% of the votes came in that social engineering is the worst threat to security today.

Thank you again for participating and we look forward to next month.

A New Breed of Hacker Con – DerbyCon 2011

Sunday, January 9th, 2011

Social-Engineer.Org is excited to be one of the sponsors for the amazing new hacker con, DerbyCon. DerbyCon is a new hacker conference located in Louisville Kentucky. Our goal is to bring back an old style, community driven hacker con chocked full of amazing talks, live events and all around fun.

derbycon offsec blog2 A New Breed of Hacker Con   DerbyCon 2011

Dave Kennedy (ReL1K), Martin Bos (PureHate), and Adrian Crenshaw (Irongeek) created the concept and idea for DerbyCon when they started talking about their desire to see more of the old style talks and events of the cons of the past. When they spoke to some in the community (more…)

A New Breed of Hacker Con

Monday, January 3rd, 2011

The team at Social-Engineer.Org is excited to be working with Dave “Re1lk” Kennedy and his team made up of Irongeek and Purehate (whom we call PureLove) on announcing their new con – Derby Con.

In the heart of Kentucky the DerbyCon crew have put together an old school style hacker con. This con is jam packed with amazing speakers with cutting edge talks as well as many of the events and hacker style.


DerbyCon A New Breed of Hacker Con

Salivating yet?  We are.  But the best is yet to come.  In a few days we will be announcing some of the details of DerbyCon that will literally blow your mind.

Until then, watch this amazing teaser video and then get ready for the announcements.

A new age of hacker cons is here.






SE Polls

SE CTF

Brad Smith