Social engineering: people are the weakest link in security

Regulation & securityBy: Parsa Aghabarari2 min readSource: Civilica
Social engineering: people are the weakest link in security

1Introduction

Social engineering tricks people into revealing information or granting access — from phishing emails to calls pretending to be bank support.

2Discussion

In finance these attacks are targeted: attackers study social media to impersonate executives and request urgent payments.

3Conclusion

Effective defence has three layers: regular training with simulated phishing, two-step approval for payments and account changes, and multi-factor authentication for sensitive access.

Share:TelegramWhatsAppLinkedIn

Sources

  1. Civilica ↗
  2. SID ↗
همفکران فناوری شریفThis article summarises the official sources cited, prepared by the Hamfekran Fanavari Sharif team for finance leaders.
Want to see these solutions in your organisation?Book a free demo

Related articles

Regulation & securityDigital customer onboarding (eKYC): opening accounts without visiting a branchRemote identity verification is the gateway to digital banking; the challenge is balancing convenience with fraud resistance.Regulation & securityPCI DSS v4: card data security in the digital payments eraAny organisation storing, processing or transmitting card data faces PCI DSS; v4 introduces a more flexible, risk-based approach.Regulation & securityInformation security risk management: from assets to management decisionsAbsolute security does not exist; informed risk management targets security spending.Regulation & securityRespected cybersecurity certifications: from CISSP to OSCPProfessional certifications are the global job market’s common language; knowing each one’s role helps choose well.