nerdexam
EC-Council

112-52 · Question #45

What is the primary goal of social engineering attacks?

The correct answer is B. To manipulate individuals into divulging confidential information. Option B is correct because social engineering attacks target human psychology rather than technical systems - attackers deceive, persuade, or pressure people into revealing passwords, credentials, or sensitive data. Classic examples include phishing emails, pretexting calls, and

Attacks and Countermeasures

Question

What is the primary goal of social engineering attacks?

Options

  • ATo exploit vulnerabilities in network protocols
  • BTo manipulate individuals into divulging confidential information
  • CTo physically damage the system infrastructure
  • DTo crack passwords using brute force techniques

How the community answered

(22 responses)
  • A
    5% (1)
  • B
    86% (19)
  • D
    9% (2)

Explanation

Option B is correct because social engineering attacks target human psychology rather than technical systems - attackers deceive, persuade, or pressure people into revealing passwords, credentials, or sensitive data. Classic examples include phishing emails, pretexting calls, and impersonation scams.

Why the distractors are wrong:

  • A (network protocol exploits) describes technical attacks like man-in-the-middle or TCP/IP vulnerabilities - these are purely technical, not social.
  • C (physical damage) describes sabotage or physical destruction, which requires physical access and intent to destroy, not manipulate.
  • D (brute force password cracking) is an automated technical technique that requires no human interaction at all.

Memory tip: Think of "social" engineering like a con artist - the weapon is words and trust, not code or tools. If the attack requires a human to say "yes," it's social engineering.

Topics

#Social Engineering#Information Disclosure#Human Vulnerability#Manipulation Tactics

Community Discussion

No community discussion yet for this question.

Full 112-52 Practice