Sunday, June 21, 2026

Security Boulevard Logo

Security Boulevard

The Home of the Security Bloggers Network

Community Chats Webinars Library
  • Home
    • Cybersecurity News
    • Features
    • Industry Spotlight
    • News Releases
  • Security Creators Network
    • Latest Posts
    • Syndicate Your Blog
    • Write for Security Boulevard
  • Webinars
    • Upcoming Webinars
    • Calendar View
    • On-Demand Webinars
  • Events
    • Upcoming Events
    • On-Demand Events
  • Sponsored Content
  • Chat
    • Security Boulevard Chat
    • Marketing InSecurity Podcast
    • Techstrong.tv Podcast
    • TechstrongTV - Twitch
  • Library
  • Related Sites
    • Techstrong Group
    • Cloud Native Now
    • DevOps.com
    • Security Boulevard
    • Techstrong Research
    • Techstrong TV
    • Techstrong.tv Podcast
    • Techstrong.tv - Twitch
    • Devops Chat
    • DevOps Dozen
    • DevOps TV
  • Media Kit
  • About
    • Sponsor

  • Analytics
  • AppSec
  • CISO
  • Cloud
  • DevOps
  • GRC
  • Identity
  • Incident Response
  • IoT / ICS
  • Threats / Breaches
  • More
    • Blockchain / Digital Currencies
    • Careers
    • Cyberlaw
    • Mobile
    • Social Engineering
  • Humor
Careers Security Awareness Security Bloggers Network Social Engineering 

Home » Cybersecurity » Careers » The Psychic and the Social Engineer

SBN

The Psychic and the Social Engineer

by Social-Engineer on November 30, 2022

Do you believe in psychics? Many people turn to psychics and mediums for advice or to communicate with dead loved ones. Others view psychics as just another form of entertainment. Whatever the case, psychics are very skilled at making people believe what they say. This is done by applying a method called cold reading. By now you may be guessing what the psychic and the social engineer have in common. Both use techniques such as using social cues, making broad statements, and using probability to create the illusion of credibility. There are many overlapping skills used by psychics and social engineers; in this article, we’ll consider the most common tactics.

The Psychic and the Social Engineer

Sell It With Conviction

Whatever your pretext is, sell it with conviction. You’ll never see a psychic who seems uncertain of their abilities. By displaying confidence, they instill confidence in others. Even when they guess something incorrectly, they dismiss it as the other person having a “suppressed memory” or something that hasn’t happened yet. Cold reading expert Ian Rowland, says “cold reading is a win-win Game’…psychics are right even when they’re wrong.”

Similarly, a professional social engineer must exhibit confidence and never break pretext. Professional social engineers encounter many instances when they are questioned by their targets to the point it seems that they will not get any of the flags, or information, that they’re after. However by having conviction and sticking with their pretext, they have often found that in the end the target gives up some valuable information.

General Statements and Probability

Instead of asking questions, make general and probable statements. For example, a psychic may say: “I see an indication of a health problem, you’ve taken steps to address it but you’re still not happy with the results.” At this point the person is allowed a chance to respond and give more details about their condition. The chances are that the person may have had some type of health problem. If they say they have not been dealing with a health problem, then the psychic can ask if they know a friend or family member who has. There is a great probability that the answer to that question is ‘yes,’ then they will be asked for further details. The point is to elicit information which can then be used to the psychic’s advantage.

Similarly, a professional social engineer sounds more convincing when making a statement rather than asking a question. While delivering an IT-based pretext, instead of asking the question: “Are you having problems with your computer?” It is more convincing if it’s delivered as statement: “We’re calling because your computer has not been backed up.” Using general statements relatable to the target enables the social engineer to elicit valuable information casually.

Active Listening and Observation

Cold reading also requires you to be an excellent listener. Any piece of information provided can be extremely helpful. It can either help you progress to the next step or be saved for an extra “hit” later on. In order to extract and remember valuable pieces of information, you have to be involved in active listening. Meaning, you listen with the intent to understand rather than to respond. By not thinking of what you’re going to say next as the person speaks, you allow yourself to be fully immersed in what they’re saying. This allows you to pick up on what experts call “hook points” which can be used later in the conversation. As James C. Collins said, “Don’t be interesting, be interested.”

Observation is a key component of cold reading as well as social engineering. When psychics or fortune tellers do a cold reading, they’re on the lookout for details about the individual. Are they wearing a wedding ring? What does their clothing reveal about what they value? Do they seem extroverted or introverted? They also look at their subject’s body language and verbal cues during the reading to evaluate how they respond to certain questions. While it sounds simple, being a good listener and attentive observer that can discreetly gather information are very powerful tools. You’ll be amazed at how much you can learn from subtle facial expressions or changes in body language. Even the subject’s clothes and accessories can give you much insight.

Practice

You don’t have to be born with super intuitive powers to be able to perform a cold reading and be pretty accurate in your guesses. Human psychology and tried-and-true techniques can turn you into an expert. Like any other skill, it takes knowledge and practice. Next time you’re in a public place, look around and observe people. Look at the small details, what they wear, their facial expressions, posture, etc. Guess if they’re married and what they do for a living. You can even engage in a friendly conversation and ask for their permission to do a quick 2-minute cold read to see how successful you are. The more you practice the better you’ll become.

For the sake of time, only a few cold reading and influence techniques were mentioned in the article. If you’re fascinated by these kinds of topics and want to learn more about rapport building, elicitation and body language you should attend our Advance Practical Social Engineering course. This specialized course immerses you in the world of social engineering using proven methods and interactive exercises that will give you an opportunity to master the skills learned.

Be Ethical

Whether you’re interested in becoming a professional social engineer or a mentalist, be ethical. Sadly, many use cold reading techniques and psychology to tap into their subject’s emotions and take advantage of their vulnerability. At the end of your engagement, the person may not remember how smart or insightful you were. However, they will remember how you made them feel and that you treated them with empathy and compassion. Always remember, knowledge and skill have the best results when used ethically.

At Social Engineer LLC, our purpose is to bring education and awareness to all users of technology. For a detailed list of our services and how we can help you achieve your information/cybersecurity goals please visit:

https://www.Social-Engineer.com/Managed-Services/.

Sources:
https://www.psychologistworld.com/cognitive/cold-reading
https://www.masterclass.com/articles/cold-reader-guide
https://www.vanishingincmagic.com/mentalism/articles/how-does-cold-reading-work/

Image:
https://www.ljmu.ac.uk/about-us/news/features/debunking-psychic-abilities

*** This is a Security Bloggers Network syndicated blog from Security Through Education authored by Social-Engineer. Read the original post at: https://www.social-engineer.org/social-engineering/the-psychic-and-the-social-engineer/

November 30, 2022November 30, 2022 Social-Engineer Ethics, General Social Engineer Blog, human hacking, Infosec, Psychology, Security Awareness, social engineering, The Psychic and the Social Engineer.
  • ← Why You Don’t Need a 300 Gbps DDoS Test
  • CyRC Vulnerability Advisory: Remote code execution vulnerabilities in mouse and keyboard apps →

Techstrong TV

Click full-screen to enable volume control
Watch latest episodes and shows

Tech Field Day Events

Upcoming Webinars

True Agentic SecOps at Lakehouse Scale
Agentic Software Delivery in 2026: How To Bridge The Gap Between AI Ambition and Delivery Confidence
Untangling the EU Cyber Resilience Act
The Software Supply Chain Just Got Harder to See
Building a Resilient Security Culture in the AI Era with AWS & Datadog

Podcast

Listen to all of our podcasts

Secure by Design

3 weeks ago | Jack Poller

Senator Sanders Wants to Own AI Companies — and Hand America’s Adversaries the Keys

4 weeks ago | Jack Poller

NIST’s Nine: The PQC Signature Race Moves to Round Three

4 weeks ago | Jack Poller

The Quantum Arms Race: Why Washington Just Wrote a $2 Billion Check to Nine Companies

1 month ago | Jack Poller

Beyond Moore’s Law: The Hyper-Acceleration of Autonomous AI Cyber Capabilities

1 month ago | Jack Poller

The Exception Economy: When Security Teams Stop Protecting and Start Negotiating

Press Releases

GoPlus's Latest Report Highlights How Blockchain Communities Are Leveraging Critical API Security Data To Mitigate Web3 Threats

GoPlus’s Latest Report Highlights How Blockchain Communities Are Leveraging Critical API Security Data To Mitigate Web3 Threats

C2A Security’s EVSec Risk Management and Automation Platform Gains Traction in Automotive Industry as Companies Seek to Efficiently Meet Regulatory Requirements

C2A Security’s EVSec Risk Management and Automation Platform Gains Traction in Automotive Industry as Companies Seek to Efficiently Meet Regulatory Requirements

Zama Raises $73M in Series A Lead by Multicoin Capital and Protocol Labs to Commercialize Fully Homomorphic Encryption

Zama Raises $73M in Series A Lead by Multicoin Capital and Protocol Labs to Commercialize Fully Homomorphic Encryption

RSM US Deploys Stellar Cyber Open XDR Platform to Secure Clients

RSM US Deploys Stellar Cyber Open XDR Platform to Secure Clients

ThreatHunter.ai Halts Hundreds of Attacks in the past 48 hours: Combating Ransomware and Nation-State Cyber Threats Head-On

ThreatHunter.ai Halts Hundreds of Attacks in the past 48 hours: Combating Ransomware and Nation-State Cyber Threats Head-On

Subscribe to our Newsletters

Most Read on the Boulevard

MSG Breach: Knicks Take the NBA Championship, ShinyHunters Takes the Data 
Malwarebytes Finds Ad Scams Hidden in 40+ World Cup Streaming Sites
F5 Embeds Neural Network in WAF Platform to Continuously Assess Risks
France to Stop Certifying Products Without Quantum-Safe Encryption in 2027
Trying to Control AI is Like Holding Sand
FortiBleed Leak Exposes VPN Credentials for Nearly 74,000 Fortinet Devices
Kodak Confirms Data Breach Claimed by ShinyHunters Extortion Gang
GitHub Locks Down npm: What the New Install Defaults Mean for Your Supply Chain
973 MCP Packages, 71% Single-Maintainer: A Practitioner’s Guide to AI Developer Security
Novo Nordisk Reports Cybersecurity Breach Affecting Clinical Trial Patients

Industry Spotlight

NYC Sewers Crawling With Rats and Potential Bad Actors 
Cybersecurity Featured Industry Spotlight Security Awareness Security Boulevard (Original) Social - Facebook Social - LinkedIn Social - X Spotlight Threats & Breaches 

NYC Sewers Crawling With Rats and Potential Bad Actors 

June 18, 2026 Teri Robinson | 3 days ago 0
Anthropic Mythos AI Model Strikes Fear in Trump Administration, U.S. Banks
Cloud Security Cybersecurity Data Privacy Data Security Featured Incident Response Industry Spotlight Malware Mobile Security Network Security News Security Awareness Security Boulevard (Original) Social - Facebook Social - LinkedIn Social - X Spotlight Threats & Breaches Vulnerabilities 

Anthropic Mythos AI Model Strikes Fear in Trump Administration, U.S. Banks

April 12, 2026 Jeffrey Burt | Apr 12 Comments Off on Anthropic Mythos AI Model Strikes Fear in Trump Administration, U.S. Banks
The Day the Security Music Died
AI and Machine Learning in Security Cybersecurity Featured Industry Spotlight Security Boulevard (Original) Social - Facebook Social - LinkedIn Social - X Spotlight 

The Day the Security Music Died

April 8, 2026 Alan Shimel | Apr 08 Comments Off on The Day the Security Music Died

Top Stories

Job Seekers Make for Vulnerable Targets
Cybersecurity Data Privacy Data Security Featured News Security Awareness Security Boulevard (Original) Social - Facebook Social - LinkedIn Social - X Spotlight 

Job Seekers Make for Vulnerable Targets

June 19, 2026 Teri Robinson | 2 days ago 0
MSG Breach: Knicks Take the NBA Championship, ShinyHunters Takes the Data 
Cybersecurity Data Security Featured News Security Boulevard (Original) Social - Facebook Social - LinkedIn Social - X Spotlight 

MSG Breach: Knicks Take the NBA Championship, ShinyHunters Takes the Data 

June 18, 2026 Teri Robinson | 3 days ago 0
Trying to Control AI is Like Holding Sand
AI and Machine Learning in Security Cybersecurity Featured News Security Boulevard (Original) Social - Facebook Social - LinkedIn Social - X Spotlight 

Trying to Control AI is Like Holding Sand

June 17, 2026 Alan Shimel | 4 days ago 0

Security Humor

Fortinet® Follies

Fortinet® Follies

Download Free eBook

[su_panel border="0px solid #ddd" radius="0" text_align="center" padding-top="0px" padding-bottom="0px"]
Managing the AppSec Toolstack
[/su_panel]

Security Boulevard Logo White

DMCA

Join the Community

  • Add your blog to Security Creators Network
  • Write for Security Boulevard
  • Bloggers Meetup and Awards
  • Ask a Question
  • Email: [email protected]

Useful Links

  • About
  • Media Kit
  • Sponsor Info
  • Copyright
  • TOS
  • DMCA Compliance Statement
  • Privacy Policy

Related Sites

  • Techstrong Group
  • Cloud Native Now
  • DevOps.com
  • Digital CxO
  • Techstrong Research
  • Techstrong TV
  • Techstrong.tv Podcast
  • DevOps Chat
  • DevOps Dozen
  • DevOps TV
Powered by Techstrong Group
Copyright © 2026 Techstrong Group Inc. All rights reserved.
×

Insert/edit link

Enter the destination URL

Or link to existing content

    No search term specified. Showing recent items. Search or use up and down arrow keys to select an item.