CAPEC-423 Metadata
Likelihood of Attack
Medium
Typical Severity
Low
Overview
Summary
The adversary influences the target's actions by building a relationship where the target has a liking to the adversary. People are more likely to be influenced by people of whom they are fond, so the adversary attempts to ingratiate themself with the target via actions, appearance, or a combination thereof.
Prerequisites
The adversary must have the means and knowledge of how to communicate with the target in some manner.The adversary must have knowledge of the types of things that the target likes.
Potential Solutions / Mitigations
An organization should provide regular, robust cybersecurity training to its employees to prevent social engineering attacks.
Related CAPECs
CAPEC ID | Description |
---|---|
CAPEC-417 | The adversary uses social engineering to exploit the target's perception of the relationship between the adversary and themselves. This goal is to persuade the target to unknowingly perform an action or divulge information that is advantageous to the adversary. |
Stay Ahead of Attack Patterns
Understanding CAPEC patterns helps security professionals anticipate and thwart potential attacks. Leverage these insights to enhance threat modeling, strengthen your software development lifecycle, and train your security teams effectively.