ExamShortcut

Cyber Security

🔒 Log in to track
high importance⚡ 8 shortcuts4 subtopics
All subtopics·Subtopic 2 of 4

Cyber attacks and social engineering

🔒 Log in to track
⏱ 3 min read🧩 5 question types🎯 20 practice Q
The idea in one minute

Attacks are methods used to cheat people or to break services. Some target people, such as phishing, vishing and smishing. Some target services, such as DoS, DDoS and man-in-the-middle. Other named attacks include salami, data diddling, logic bomb, SQL injection and brute force.

01

Two groups of attacks

Group every attack by its target. Some attacks target people. Others target services.

02

Attacks on people

  • Phishing: a fake mail or site that looks like your bank. It asks for passwords, OTPs or card details. Think of fishing with bait.
  • Spear phishing: phishing aimed at one person or one office, using personal details.
  • Vishing: phishing by voice, a phone call.
  • Smishing: phishing by SMS.
  • Pharming: you type the correct address, yet a fake site opens. The attacker has tampered with the DNS or the server.
  • Social engineering: tricking people through fear, urgency or authority. It attacks the person, not the code.

Tip: Phishing needs the user to be fooled. Pharming does not.

03

Attacks on services

  • DoS (Denial of Service): a flood of useless requests so real users cannot get in.
  • DDoS (Distributed DoS): the flood comes from many machines at once, often a botnet.
  • Man-in-the-Middle (MITM): the attacker sits between two parties and reads or changes what they send. Open Wi-Fi is a common setting.
  • Eavesdropping: passive listening to data as it travels.
  • Sniffing: capturing network packets to read them.
  • Spoofing: pretending to be someone else, such as a fake sender address.
04

Named attacks

AttackIdea
Salami attackSteals tiny amounts from very many accounts. Hard to notice
Data diddlingChanges data before or while it is entered
Logic bombCode that waits for a trigger, then acts
SQL injectionTypes database commands into a web form to read the database
Brute forceTries every possible password until one works
05

Telling the look-alikes apart

  • Phishing asks the user to hand over data. Pharming hijacks the address itself.
  • DoS drowns the server. MITM listens in the middle of a real conversation.
  • Salami steals small amounts often. Data diddling alters records.
  • A logic bomb waits for a trigger.

Rule: The word "distributed" means many sources. DDoS is the flood from many machines.

Example: A bank clerk shaves a few paise off thousands of accounts. That is a salami attack.

06

Question types you will see

Each type: how to recognise it, the method step by step, and one question to try.

Type 1very common4 practice Q

Phishing family

How to spot it:

The scenario describes a fake mail, call, SMS or site that asks for private data.

Method
  1. Check the delivery: mail, voice, SMS or site.

  2. Mail is phishing, voice is vishing, SMS is smishing.

  3. A fake site despite a correct address is pharming.

Why it works:

The family shares one aim, and only the channel differs.

Try this

Which attack sends a fake SMS to trick a user into giving bank details?

Show solution
  1. The channel is SMS.

  2. Phishing by SMS is smishing.

Answer

Smishing

Type 2very common3 practice Q

DoS and DDoS floods

How to spot it:

A server is overwhelmed and real users cannot get in.

Method
  1. Spot the words flood, overload or unavailable.

  2. One source is DoS.

  3. Many machines, often a botnet, is DDoS.

Why it works:

The flood denies the service to real users.

Try this

An attack that floods a server from thousands of infected machines is a:

Show solution
  1. The flood comes from many machines.

  2. That is the distributed form.

Answer

DDoS attack

Type 3common3 practice Q

Man-in-the-Middle and eavesdropping

How to spot it:

Someone secretly reads or changes messages between two parties.

Method
  1. Spot the words between, intercept or open Wi-Fi.

  2. Reading and changing is MITM.

  3. Only listening is eavesdropping.

Why it works:

The attacker sits in the middle of a real chat.

Try this

An attacker secretly sits between a user and a website and reads the traffic. This is:

Show solution
  1. The attacker is between two parties.

  2. That is MITM.

Answer

Man-in-the-Middle attack

Type 4very common4 practice Q

Classic named attacks

How to spot it:

The question gives a special detail such as tiny amounts, a trigger, or a web form.

Method
  1. Tiny amounts from many accounts is salami.

  2. Data changed during entry is data diddling.

  3. A trigger date is a logic bomb.

  4. Commands in a form is SQL injection.

Why it works:

Each named attack has one memorable trick.

Try this

A program deletes files on 1 January of a given year, and stays silent until then. It is a:

Show solution
  1. It waits for a date.

  2. A date trigger means a logic bomb.

Answer

Logic bomb

Type 5occasional

Brute force and password guessing

How to spot it:

An attacker tries many passwords until one works.

Method
  1. Spot the words every combination or many guesses.

  2. Name it brute force.

  3. Long and mixed passwords slow it down.

Why it works:

A longer password has far more combinations to try.

Try this

Trying every possible password until the right one is found is called:

Show solution
  1. Every option is tried.

  2. The method uses force, not trickery.

Answer

Brute force attack

07

Shortcuts that save time

⚡ V for voice, S for SMS

Vishing uses voice calls. Smishing uses SMS. Both are phishing with a different bait.

Example

A fraudster phones you pretending to be from your bank and asks for your OTP. This is:

Show solution
  1. The bait is a phone call.

  2. Phishing by voice is vishing.

Answer

Vishing

⚡ Pharm needs no click

In pharming you type the right address and still reach a fake site. The address system was tampered with.

08

Mistakes to avoid

Where most students lose marks on this subtopic.

Mistake 01

Calling a DoS attack a virus.

DoS is a flood of requests. It is an attack, not malware.

Mistake 02

Saying pharming needs the user to click a bad link.

Pharming sends you to a fake site even if you type the right address.

Mistake 03

Confusing DoS and DDoS.

DDoS comes from many machines at once.

Mistake 04

Thinking MITM floods the server.

MITM sits between two parties and listens or changes messages.

Mistake 05

Mixing salami with data diddling.

Salami steals tiny amounts. Data diddling changes data during entry.

09

Quick revision

Read this the night before the exam.

  • Phishing is mail bait. Vishing is voice. Smishing is SMS. Pharming is a fake site despite a correct address.

  • Spear phishing targets one person or office.

  • DoS floods a server. DDoS floods from many machines, usually a botnet.

  • MITM listens between two parties. Eavesdropping is passive listening.

  • Salami takes tiny sums from many accounts. Logic bomb waits for a trigger.

  • SQL injection puts commands in a web form. Brute force tries every password.

  • Social engineering attacks the person, not the machine.

10

Practice: 20 questions

Sets of 10, mixed across the question types above. Every answer has a step-by-step explanation.

Topic test · 10 questions

Suggested time 5 min · wrong answers go to your mistake notebook automatically.