ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 38 - ECSS discussion

Report
Export

Christian is working as a software developer in a reputed MNC. He received a message from XIM bank that claims to be urgent and requests to call a phone number mentioned in the message. Worried by this, he called the number to check on his account, believing it to be an authentic XIM Bank customer service phone number. A recorded message asks him to provide his credit or debit card number, as well as his password.

Identify the type of social engineering attack being performed on Christian in the above scenario.

A.

SMiShing

Answers
A.

SMiShing

B.

Spam mail

Answers
B.

Spam mail

C.

Phishing

Answers
C.

Phishing

D.

Eavesdropping

Answers
D.

Eavesdropping

Suggested answer: A

Explanation:

The scenario described is a classic example ofSMiShing, a form of social engineering attack that uses text messages (SMS) to deceive individuals into providing sensitive information. In this case, Christian receives an urgent message prompting him to call a phone number, which is a tactic used in SMiShing attacks to create a sense of urgency and legitimacy. Upon calling the number, he is asked to provide personal financial information, which is the ultimate goal of the attacker.

SMiShing attacks often impersonate legitimate entities, such as banks, to trick victims into believing that the request is authentic.The use of a recorded message asking for credit or debit card numbers and passwords is a telltale sign of a SMiShing attempt, as legitimate banks would not ask for such sensitive information via a phone call initiated by an unsolicited text message1. Therefore, the correct answer is A, SMiShing, which specifically refers to phishing attacks conducted through SMS.

asked 24/10/2024
Hassene SAADI
30 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first