From SAN’s Internet Storm Center:
Why bother breaking down the door if you can simply ask to be let in? Social engineering works, both during penetration testing and as part of real-world attacks. This note explores how attackers are using social engineering to compromise computer defenses.
- Starting in the Physical World
- Malware Installation Tricks
- Targeted Attack Tricks
More on above in http://isc.sans.org/diary.html?storyid=7465