An IT security analyst is cataloging recent security incident reports across different departments. Match each security threat scenario to its corresponding social engineering vector or attack classification.
- WhalingA targeted phishing attack directed specifically at senior executives to trick them into authorizing wire transfers or releasing proprietary financial records.
- PiggybackingAn unauthorized visitor entering a restricted server room by gaining an employee's explicit consent to hold open the electronic access badge door while carrying equipment boxes.
- HoaxAn urgent email broadcast warning users of a destructive virus that instructs recipients to immediately delete critical system files to prevent infection.
- Logic BombMalicious code deliberately planted by a former developer that remains dormant until triggered by specific system conditions, such as a date or user account termination.
Answer
Whaling matches the executive-targeted phishing scenario; Piggybacking matches entry into a secured room with employee consent; Hoax matches the false security alert instructing users to delete files; Logic Bomb matches dormant malicious code waiting for a specific trigger condition.
Each attack type matches its defined characteristic operational behavior. Whaling targets top leadership; Piggybacking exploits physical entry courtesy with mutual knowledge; Hoaxes trick personnel using deceptive false warnings; Logic Bombs execute code based on specified temporal or logic triggers.
Step-by-Step Solution
Key Concept
Classification of Social Engineering and Threat Types