He talks about social engineering as a form of security attack but much of the examples he may provide are relevant.
http://www.google.com/search?domains=www.schneier.com&si...