| | SLO | ENG | Cookies and privacy

Bigger font | Smaller font

Show document Help

Title:Socialni inženiring na internetu : magistrsko delo
Authors:ID Bajrami, Blerta (Author)
ID Dobovšek, Bojan (Mentor) More about this mentor... New window
Files:.pdf MAG_Bajrami_Blerta_2024.pdf (1,11 MB)
MD5: A9E35633AC250A981FB9DCBC4E9E2A52
 
Language:Slovenian
Work type:Master's thesis/paper
Typology:2.09 - Master's Thesis
Organization:FVV - Faculty of Criminal Justice and Security
Abstract:Socialni inženiring, v katerem se od internetnega uporabnika z manipulacijo pridobi in zlorabi njegove zasebne informacije, predstavlja resno grožnjo v kibernetskem okolju. Ker je človek zaupljive narave, predstavlja lažjo »tarčo« za razkritje zasebnih podatkov, socialni inženirji pa tudi postajajo vse bolj profesionalizirani. Še pred napadom izvedejo obsežno raziskavo svoje žrtve, vešči so psihološke manipulacije, komuniciranja, prepoznavanja čustev in vedenja, zato si zlahka pridobijo zaupanje svoje žrtve. Uporabniki interneta in podjetja zaradi socialnega inženiringa utrpijo veliko škode. Napadena podjetja so v povprečju izgubila 130.000 dolarjev zaradi uničenih podatkov in drugih zlorab. Zaskrbljujoč je nad 90-odstotni delež socialnega inženiringa v kibernetskem okolju. Učinkovitost gre pripisati enostavnosti izvedbe, profesionaliziranosti socialnih inženirjev, razvoju digitalizacije in tudi pojavu umetne inteligence. Med 34 obravnavanimi primeri socialnega inženiringa v svetu je najodmevnejši in finančno največji primer napada na podjetji Google in Facebook med leti 2013 in 2015, katerega vrednost ocenjujejo na rekordnih 121 milijonov dolarjev. Najpogostejša oblika napada socialnih inženirjev tako v svetu kot v Sloveniji predstavlja »ribarjenje«, pri katerem se preko telefonskih klicev, e-pošte, lažnih spletnih mest ali oglasov zavede žrtev in od nje pridobi občutljive in zaupne informacije, kot so podatki o kreditni kartici, zavarovanju, polnem imenu, naslovu ipd. Zaradi kompleksnosti izvedenih napadov ter kombiniranja več oblik napadov obramba pred socialnim inženiringom ni enostavna, se je pa možno s krepitvijo previdnostnega vedenja preventivno usmeriti. Okrepiti je potrebno osveščanje in ozaveščanje uporabnikov interneta glede socialnega inženiringa ter v podjetjih vzpostaviti zanesljive varnostne politike.
Keywords:socialni inženiring, kibernetska varnost, napadi, magistrska dela
Place of publishing:Ljubljana
Place of performance:Ljubljana
Publisher:B. Bajrami
Year of publishing:2024
Year of performance:2024
Number of pages:VIII f., [71] str.
PID:20.500.12556/DKUM-90058 New window
UDC:343.3/.7:004(043.2)
COBISS.SI-ID:214613251 New window
Publication date in DKUM:13.11.2024
Views:276
Downloads:154
Metadata:XML DC-XML DC-RDF
Categories:FVV
:
Copy citation
  
Average score:(0 votes)
Your score:Voting is allowed only for logged in users.
Share:Bookmark and Share



Hover the mouse pointer over a document title to show the abstract or click on the title to get all document metadata.

Licences

License:CC BY-NC-ND 4.0, Creative Commons Attribution-NonCommercial-NoDerivatives 4.0 International
Link:http://creativecommons.org/licenses/by-nc-nd/4.0/
Description:The most restrictive Creative Commons license. This only allows people to download and share the work for no commercial gain and for no other purposes.
Licensing start date:21.08.2024

Secondary language

Language:English
Title:Social engineering on the internet
Abstract:Social engineering, in which an internet user is manipulated so that their private information can be obtained and misused, is a serious threat in the cyber environment. As human beings are of a trusting nature, they are an easier target for the disclosure of private information, and social engineers are also becoming increasingly professional. Before the attack, they extensively study their victim, and they are skilled in psychological manipulation, communication, recognition of emotions and behaviour, and therefore they easily gain the trust of their victim. Internet users and businesses suffer a lot of damage due to social engineering, with attacked businesses losing an average of US$130,000 due to destroyed data and other abuses. The over 90% rate of presence of social engineering in the cyber environment is alarming. Its effectiveness can be attributed to the simplicity of methods, the professionalisation of social engineers, the development of digitisation and also the emergence of artificial intelligence. Among the 34 discussed cases of social engineering globally, the most high-profile and financially largest case is the attack on Google and Facebook between 2013 and 2015, the value of which is estimated at a record US$121 million. The most frequent form of attack by social engineers, both globally and in Slovenia, is phishing, in which the victim is deceived by phone calls, e-mails, fake websites or advertisements that are used to obtain their sensitive and confidential information, such as credit card information, insurance, full name, address, etc. Due to the complexity of the performed attacks and the combination of several forms of attacks, defending against social engineering is not easy, but it is possible to focus on prevention by strengthening precautionary behaviour. It is necessary to strengthen the consciousness and awareness of internet users about social engineering and establish reliable security policies in companies.
Keywords:Social Engineering, Internet Users, Attack, Cyber Security


Comments

Leave comment

You must log in to leave a comment.

Comments (0)
0 - 0 / 0
 
There are no comments!

Back
Logos of partners University of Maribor University of Ljubljana University of Primorska University of Nova Gorica