Jump to content
Nytro

The DEFCON21 Social Engineer Capture The Flag Report

Recommended Posts

Posted

The! DEFCON21 Social Engineer

Capture The Flag Report

Table&of&Contents&........................................................................................................................................................................&2!
Executive&Summary&...................................................................................................................................................................&3!
Overview&of&the&SECTF&............................................................................................................................................................&4!
Background!and!Description!................................................................................................................!4!
Description!of!the!2013!Parameters!....................................................................................................!6!
Target!Companies!................................................................................................................................!6!
Competitors!.........................................................................................................................................!7!
Flags!.....................................................................................................................................................!7!
Scoring!.................................................................................................................................................!9!
Rules!of!Engagement!(R.O.E)!...............................................................................................................!9!
Results?&Analysis&..............................................................................................................................................................&10!
Open!Source!Information!Gathering!.................................................................................................!11!
Pretexting!..........................................................................................................................................!14!
Live!Call!Performance!........................................................................................................................!16!
Final!Contest!Results!..........................................................................................................................!19!
Discussion!..........................................................................................................................................!22!
Mitigation!..........................................................................................................................................!23!
1.!Corporate!Information!Handling!and!Social!Media!Policies!..........................................................!23!
2.!Consistent,!Real!World!Education!.................................................................................................!24!
3.!Regular!Risk!Assessment!and!Penetration!Test!.............................................................................!24!
About&SocialDEngineer,&Inc&..................................................................................................................................................&25!
Sponsors&......................................................................................................................................................................................&26

Download:

http://www.social-engineer.org/defcon21/DC21_SECTF_Final.pdf

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.



×
×
  • Create New...