@csrf
tweet about social engineering

22.05.2023 news Social Engineering! How Social Media Comments Can Empty Your Bank Account

Published 22nd May, 2023

By Abimbola Abatta

Nothing delights scammers more than a trail of your personal information on different social media platforms.

Social media users often drop their personal details while engaging posts on Twitter, Facebook and other platforms. These actions, though innocent, tend to leave a digital footprint. And to scammers, these footprints are like a treasure chest.

At the weekend, @ayodeji_og shared a post asking tweeps to reveal the names of their mothers in a thread. This request did not sit well with many Nigerians who understand social engineering.

READ ALSO: ALERT: Scammers Targeting Nigerians With False Illness, Job Stories

SOCIAL ENGINEERING

@WolePhoenix, one of the tweeps who commented on the post, noted that all the information other tweeps might have dropped could be used to launch a malicious attack through social engineering.

Tweet warning social media users of social engineering

FIJ’s findings showed that social engineering refers to every technique aimed at making someone reveal specific information or perform a specific action for illegitimate reasons.

It uses psychological manipulation to trick users into making security mistakes or giving away sensitive information.

READ ALSO: ALERT: Phishers Targeting YouTube Account Owners

Abdulrahman Tunde, a cyber security researcher, who commented on the post, vividly illustrated how sharing one’s details online could be unwise and risky.

“Those engaging this tweet, I have a message for you. Previously, you have dropped your [date of birth], you have dropped your account details under giveaway, you have dropped your location of birth under a different engagement,” said Tunde.

“You have also dropped your phone number to win data giveaway. Then ‘Mr. Charles from your bank’ will call you tomorrow. He will tell you your name, your DOB, your mother’s name, then tell you your ATM is having issues.”

Another tweet warning users of social engineering

“Then you will call your ATM number, and [he will] ask you to send OTP. By tomorrow, you will start dragging ‘your bank’ that you were wrongly debited. A more deadly scenario is using these same details you are giving out willingly as your PIN, password and security questions.”

WHY SHOULD YOU TAKE CAUTION?

Questions such as ‘What is your mother’s maiden name?’ are known as security questions.

Apart from mother’s maiden name, security questions can come in the form of address, date of birth, name of the street you grew up on, the name of your first pet, the name of your high school, the city where you grew up, your childhood nickname and the model of your first car.

According to Okta, an American identity and access management company, these questions are used to authenticate one’s identity. They typically serve as an extra layer of security.

What does the above imply? In Nigeria, many websites, as well as mobile and web apps, utilise security questions. Also, financial institutions, cable companies and wireless providers use security questions.

Banks, for instance, require customers to answer security questions when they want to reset their pins or passwords, change their transaction PIN and manage beneficiaries, among other functions.

In an era where online scam is rife with no permanent solution in sight, one can imagine the dangers associated with voluntarily giving out personal information in the name of social media engagement.

When such questions are asked on social media, they might appear harmless. However, one must think twice before answering them because fraudsters may be lurking in the comments waiting to pounce on their next victim.

Leave a Reply

Your email address will not be published. Required fields are marked *


Published 22nd May, 2023

By Abimbola Abatta

Advertisement

Our Stories

23 Civilian Joint Task Force Members Killed in Separate Attacks

VIDEO: Fuel Scarcity Hits Osun, Ekiti as Petrol Sells for N800 Per Litre

Policeman Adamu Idris Extorts N50,000 From Gospel Singer in Abuja

Man Who Jumped Bail to Continue Drug Trafficking Sentenced to Life Imprisonment

British-Nigerian Cosmetic Doctor Removed From UK Medical Register for Having Sex With Patient

VIDEO: ‘DPO’ Cuffs, Slaps AAC Chairman During Oyo LG Election

8 Months on, N877,000 Still Missing From Kuda Bank Customer’s Account

Zero Promotion, Double Taxation… Why NSITF Employees Protested in Abuja

From N13,106 in October, Cost of Jollof Rice for 5 People Rose to N16,955 in March

Instead of 250, Broken 110-Year-Old Suleja Prison Held 499 Inmates

Advertisement