What is Social Engineering?
Social engineering is the practice of manipulating people into performing actions or divulging confidential information, rather than exploiting technical vulnerabilities. Common techniques include phishing emails, phone calls (vishing), impersonation, and pretexting. In the context of penetration testing, social engineering assessments measure how well an organisation's staff can recognise and resist these attacks.