# Lab 1.1: Social Engineering Techniques & Reconnaissance > CompTIA Security+ Module 01 case study by Johnathan Belcher. ## Overview In-depth hands-on laboratory exploring the social engineering attack landscape and reconnaissance techniques. This comprehensive module equipped me with the knowledge and practical skills to identify, analyze, and defend against sophisticated social engineering attacks — a critical component of modern cybersecurity operations. ## Core Competencies Developed **Social Engineering Attacks** - Phishing & Variants: Spear phishing, whaling, vishing, smishing - Physical Attacks: Shoulder surfing, tailgating, dumpster diving, baiting - Digital Methods: Typosquatting, hoaxes, identity theft, credential harvesting - Channel-Based: Spam, SPIM (SMS/IM), malware attachments **Kali Linux Tools & Techniques** - Recon-ng: Automated reconnaissance framework for OSINT gathering - theHarvester: Email and subdomain enumeration tool - Nmap: Network discovery and port scanning for live host detection - DNS & Wireshark: DNS querying and network packet analysis ## Module Exercises & Topics **Exercise 1: Social Engineering Fundamentals** — Explored the psychological and technical foundations of social engineering attacks, analyzing how attackers manipulate human behavior to bypass security controls. Topics: phishing attacks (website spoofing, credential harvesting, pharming, DNS cache poisoning), phishing variants (spear phishing, whaling, prepending), attack vectors (email, malicious websites, in-person manipulation, phone calls), and success factors (lack of user awareness, visual deception, psychological manipulation). **Exercise 2: Social Engineering Principles & Methods** — Analyzed the psychological principles attackers exploit and diverse attack methodologies: authority (impersonating law enforcement or IT personnel), trust & relationship building, physical attacks (shoulder surfing, tailgating, baiting, dumpster diving), digital exploitation (typosquatting, hoaxes, SPIM), and identity compromise (identity theft, invoice scams, impersonation). **Exercise 3: Reconnaissance & Footprinting** — Practical reconnaissance lab utilizing Kali Linux tools for OSINT gathering, network enumeration, and system fingerprinting: DNS querying (nslookup, dig), Recon-ng, theHarvester, network discovery via ping scans, Nmap port scanning, system fingerprinting, and Wireshark packet analysis. ## Technical Skills Acquired - Reconnaissance Tools: Recon-ng, theHarvester, Nmap, dig/nslookup, Wireshark - Analysis Techniques: OSINT gathering, network enumeration, system fingerprinting, attack surface mapping, vulnerability identification - Security Knowledge: social engineering tactics, threat assessment, risk evaluation, defense strategies, user awareness training ## Key Insights & Applications - Social engineering exploits human psychology rather than technical vulnerabilities, making user education critical for defense. - Sophisticated threats combine phishing, OSINT gathering, and technical reconnaissance for targeted campaigns. - Open-source intelligence gathering can reveal substantial attack surface without triggering security alerts. - Effective security requires combining technical controls, user training, and process improvements. ## CompTIA Security+ Alignment Addresses Security+ Exam Objective 1.1: "Compare and contrast different types of social engineering techniques." Covers phishing (all variants), vishing & smishing, spear phishing & whaling, physical social engineering, and OSINT reconnaissance.