Skip to main content

Which Disney(c) Princess are YOU?

Social engineering for identity theft has always been around. But now, with the advent of social networking sites such as Facebook, MySpace, and a host of others, it has become easier than ever to harvest personal information from unsuspecting targets. This paper looks into just how much personal information can be gathered by the seemingly-harmless What type of personality are you? quizzes that are so prevalent on social networking sites. The paper will then look at what the information could be used for, and how to protect against this particular vector of social engineering.

33328 (PDF, 2.47MB)

18 Mar 2010
ByJoshua Brower
Share
All papers are copyrighted

No re-posting of papers is permitted

Related Content

SANS 2025 Security Awareness Report

Research Paper

Now in its 10th year, the SANS Security Awareness Report remains the definitive, practitioner-built resource for understanding and managing the human side of cybersecurity.

  • 12 Aug 2025
  • Lance Spitzner

Be a DLP Hero: How to Quickly Deliver Value from Your DLP Program and Set It Up for Future Success

Research Paper

Download this paper and learn how to launch or strengthen your data loss prevention (DLP) program.

  • 3 Jun 2025
  • Kevin Garvey

Resiliency and Business Continuity in the Cloud Era

Research Paper

In this white paper, Dave Shackleford unpacks today’s evolving cloud threat landscape.

  • 21 May 2025
  • Dave Shackleford

Metrics-Driven Information Security Framework as Part of Information Security Management

Research Paper

This paper presents a model of creating an actual accurate metrics-based security reporting model that is tied closely to the security management model used at the company.

  • 22 Mar 2022

Denial of Service Deterrence

Research Paper

Denial of Service has been a very useful practice for attackers and continues to remain prevalent...

  • 1 Apr 2015

Practical El Jefe

Research Paper

El Jefe is open source process monitoring software for Windows. With this tool, incident handlers...

  • 31 Mar 2015

Using Influence Strategies to Improve Security Awareness Programs

Research Paper

Even companies with extensive, well-funded security awareness programs fall victim to attacks...

  • 25 Oct 2013

Talking Out Both Sides of Your Mouth: Streamlining Communication via Metaphor

Research Paper

As Security is a relatively new field, we are still learning how to communicate what we know with...

  • 4 Oct 2013

Information Risks and Risk Management

Research Paper

This brief will cover the various exposures that companies now face as they increasingly rely on...

  • 1 May 2013

Surfing the Web Anonymously - The Good and Evil of the Anonymizer

Research Paper

Companies of all sizes spend large amounts of time, resources, and money to ensure that their...

  • 8 Oct 2012

Robots.txt

Research Paper

Although this GIAC gold paper is not about search engine optimization, or SEO, this paper will...

  • 31 May 2012

A Process for Continuous Improvement Using Log Analysis

Research Paper

Good security is a moving target. Walls and castles were once good defenses against attackers, but...

  • 26 Oct 2011

Measuring Psychological Variables of Control In Information Security

Research Paper

The effects of an individual's personal feelings of control over aspects of their health have been...

  • 12 Jan 2011

Prelude as a Hybrid IDS Framework

Research Paper

Organizations both Large and Small are constantly looking to improve their posture on security....

  • 24 Mar 2009

The Importance of Security Awareness Training

Research Paper

One of the best ways to make sure company employees will not make costly errors in regard to...

  • 14 Jan 2009

Vendor-Supplied Backdoor Passwords - A Continuing Vulnerability

Research Paper

Vendor-Supplied Backdoor Passwords - A Continuing Vulnerability

  • 26 Sep 2008

Making Security Awareness Efforts Work for You

Research Paper

Making Security Awareness Efforts Work for You

  • 20 May 2008

The Controlled Event Framework for Information Asset Security

Research Paper

The Controlled Event Framework for Information Asset Security

  • 20 Feb 2008

Data Leakage - Threats and Mitigation

Research Paper

Data Leakage - Threats and Mitigation

  • 24 Oct 2007

Identity Theft

Research Paper

The act of identity theft can be performed by anyone, it could be family, friends or spouses. The...

  • 2 Jul 2007

Subscribe to GIAC’s Monthly Newsletter

Receive expert insights, priority access to certifications, essential updates on regulatory changes and industry developments.