Don’t blame employees for social engineering attacks, says security expert

Don’t blame employees for social engineering attacks, says security expert

12:44 9th March 2010

Companies that fall so-called social engineering attacks should not blame employees, an internet security expert has said.

"The real problem is weak security procedures, but individuals tend to get blamed because it makes executives look better," Ira Winkler told attendees of RSA Conference 2010 in San Francisco.

Winkler, who is president of the Internet Security Advisors Group, urged businesses to make sure that security procedures are robust and include proper authentication and tracking mechanisms.

"The problem is that when individuals are blamed, the processes often remain unchanged and the vulnerability remains," he added.

In other news, a phishing campaign is targeting Twitter users to steal their passwords and hijack accounts, according to security firm Sophos.

The hijacked accounts are being used to spread money-making spam campaigns. Phishing links started to appear in humorous postings that began with internet phrases like "lol, this is funny" and "lol this you??"

Written by Hannah James

ADNFCR-1667-ID-19658125-ADNFCR

Call 0800 083 0261 for FREE priority careers advice
Request your FREE brochure today

Search Computeach

For a FREE e-brochure
call 0800 083 0261