People are prone to taking mental shortcuts. They may know that they shouldn't give out certain information, but the fear of not… — Kevin Mitnick Copy Share Image
When somebody asks for a favor involving information, if you don't know him or can't verify his identity, just say no. — Kevin Mitnick Copy Share Image
Think about it: if you were running a multi-million dollar company, and your database of customer information was stolen, would you want… — Kevin Mitnick Copy Share Image
Social engineering is using manipulation, influence and deception to get a person, a trusted insider within an organization, to comply with a… — Kevin Mitnick Copy Share Image
The methods that will most effectively minimize the ability of intruders to compromise information security are comprehensive user training and education. Enacting… — Kevin Mitnick Copy Share Image
Companies spend millions of dollars on firewalls, encryption, and secure access devices and it's money wasted because none of these measures address… — Kevin Mitnick Copy Share Image
A lot of individuals out there carry a lot of proprietary information on their mobile devices, and they're not protected. It's a… — Kevin Mitnick Copy Share Image
Penetrating a company's security often starts with the bad guy obtaining some piece of information that seems so innocent, so everyday and… — Kevin Mitnick Copy Share Image
I obtained confidential information in the same way government employees did, and I did it all without even touching a computer. ...… — Kevin Mitnick Copy Share Image
The key to social engineering is influencing a person to do something that allows the hacker to gain access to information or… — Kevin Mitnick Copy Share Image
If I needed to know about a security exploit, I preferred to get the information by accessing the companies' security teams' files,… — Kevin Mitnick Copy Share Image
Oracle, for example, has even hired people to dumpster dive for information about its competitor, Microsoft. It's not even illegal, because trash… — Kevin Mitnick Copy Share Image
I was fascinated with the phone system and how it worked; I became a hacker to get better control over the phone company. — Kevin Mitnick Copy Share Image
Nine out of every 10 large corporations and government agencies have been attacked by computer intruders. — Kevin Mitnick Copy Share Image
Back up everything! You are not invulnerable. Catastrophic data loss can happen to you - one worm or Trojan is all it takes. — Kevin Mitnick Copy Share Image
It's true, I had hacked into a lot of companies, and took copies of the source code to analyze it for security bugs. If… — Kevin Mitnick Copy Share Image
When an attacker fails with one person, they often go to another person. The key is to report the attack to other departments. Workers… — Kevin Mitnick Copy Share Image
I think malware is a significant threat because the mitigation, like antivirus software, hasn't evolved to a point to really mitigate the risk to… — Kevin Mitnick Copy Share Image
Usually companies hire me, and they know full well who I am, and that's one of the reasons they want to hire me. — Kevin Mitnick Copy Share Image
A lot of companies are clueless, because they spend most or all of their security budget on high-tech security like fire walls and biometric… — Kevin Mitnick Copy Share Image
I characterize myself as a retired hacker. I'm applying what I know to improve security at companies. — Kevin Mitnick Copy Share Image
No company that I ever hacked into reported any damages, which they were required to do for significant losses. Sun didn't stop using Solaris… — Kevin Mitnick Copy Share Image
New security loopholes are constantly popping up because of wireless networking. The cat-and-mouse game between hackers and system administrators is still in full swing. — Kevin Mitnick Copy Share Image