A solution to minimise the success of phishing attempts using the effects of human behaviour and emotions on falling into a phishing scam

Phishing is a social engineering scam that can cause data loss, reputational damages, identity theft, money loss, and many other damages to people and organisations. Multiple studies showed the effects of human behaviour, such as risk-taking and decision making, on Internet users' security beha...

Ausführliche Beschreibung

Gespeichert in:
Bibliographische Detailangaben
Hauptverfasser: Abroshan, Hossein, Devos, Jan, Poels, Geert, Laermans, Eric
Format: Tagungsbericht
Sprache:eng
Schlagworte:
Online-Zugang:Volltext bestellen
Tags: Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!
container_end_page
container_issue
container_start_page
container_title
container_volume
creator Abroshan, Hossein
Devos, Jan
Poels, Geert
Laermans, Eric
description Phishing is a social engineering scam that can cause data loss, reputational damages, identity theft, money loss, and many other damages to people and organisations. Multiple studies showed the effects of human behaviour, such as risk-taking and decision making, on Internet users' security behaviour. Researchers also investigated how email users' behaviour can influence the success of a phishing attempt. Moreover, the number of phishing attempts has been increased rapidly since the beginning of the COVID-19 outbreak. Several studies demonstrated the effects of the COVID-19 pandemic on human behaviour, impacting phishing attempts' success. Organisations can use the results of these studies to find potential high-risk users by measuring the users' behaviour and emotions, which are associated with falling into a phishing scam. In this study, we have developed a solution and guideline using previous studies to identify risky users (i.e., those at risk of clicking on phishing links). The solution will then suggest or assigns proper mitigation actions for those users. The system contains measurement (psychological scales), scoring (machine learning), and mitigation modules that can become more mature and accurate over time. Furthermore, specific situations, such as the pandemic, is also considered in the solution- that is, when a situation like the COVID-19 pandemic happens, the solution will consider the impacted human emotions in finding the high-risk users and might suggest other types of mitigations. We have used regression models for the machine learning module. The proposed solution will help organisations focus more on high-risk users and reduce cyber risks. This solution, however, should be used in combination with technical anti-phishing systems and cybersecurity awareness training campaigns to achieve better results.
format Conference Proceeding
fullrecord <record><control><sourceid>ghent_ADGLB</sourceid><recordid>TN_cdi_ghent_librecat_oai_archive_ugent_be_8705331</recordid><sourceformat>XML</sourceformat><sourcesystem>PC</sourcesystem><sourcerecordid>oai_archive_ugent_be_8705331</sourcerecordid><originalsourceid>FETCH-ghent_librecat_oai_archive_ugent_be_87053313</originalsourceid><addsrcrecordid>eNqdjU0KwjAQhbtxIeod5gKCWkS3IooHcB-mcdIM5Kd0Jt7BW9uI4N7V4_G9n3nzOoHkUJRzAs0QOXFkIVBPIMVaEoHsYPAsnlMPqEpxUIEi1dYYOUdWPzFfIiboyOOTcxkB0wMo5ro-8QQOQ6g1TtMX_lbFYlw2swkLrb66aHbXy_18W_eekprA3UgW1WRkg6P1_CRT-oo6MsfDZt-22_av0hsPQFvr</addsrcrecordid><sourcetype>Institutional Repository</sourcetype><iscdi>true</iscdi><recordtype>conference_proceeding</recordtype></control><display><type>conference_proceeding</type><title>A solution to minimise the success of phishing attempts using the effects of human behaviour and emotions on falling into a phishing scam</title><source>Ghent University Academic Bibliography</source><creator>Abroshan, Hossein ; Devos, Jan ; Poels, Geert ; Laermans, Eric</creator><creatorcontrib>Abroshan, Hossein ; Devos, Jan ; Poels, Geert ; Laermans, Eric</creatorcontrib><description>Phishing is a social engineering scam that can cause data loss, reputational damages, identity theft, money loss, and many other damages to people and organisations. Multiple studies showed the effects of human behaviour, such as risk-taking and decision making, on Internet users' security behaviour. Researchers also investigated how email users' behaviour can influence the success of a phishing attempt. Moreover, the number of phishing attempts has been increased rapidly since the beginning of the COVID-19 outbreak. Several studies demonstrated the effects of the COVID-19 pandemic on human behaviour, impacting phishing attempts' success. Organisations can use the results of these studies to find potential high-risk users by measuring the users' behaviour and emotions, which are associated with falling into a phishing scam. In this study, we have developed a solution and guideline using previous studies to identify risky users (i.e., those at risk of clicking on phishing links). The solution will then suggest or assigns proper mitigation actions for those users. The system contains measurement (psychological scales), scoring (machine learning), and mitigation modules that can become more mature and accurate over time. Furthermore, specific situations, such as the pandemic, is also considered in the solution- that is, when a situation like the COVID-19 pandemic happens, the solution will consider the impacted human emotions in finding the high-risk users and might suggest other types of mitigations. We have used regression models for the machine learning module. The proposed solution will help organisations focus more on high-risk users and reduce cyber risks. This solution, however, should be used in combination with technical anti-phishing systems and cybersecurity awareness training campaigns to achieve better results.</description><language>eng</language><subject>Technology and Engineering</subject><creationdate>2021</creationdate><rights>No license (in copyright) info:eu-repo/semantics/openAccess</rights><oa>free_for_read</oa><woscitedreferencessubscribed>false</woscitedreferencessubscribed></display><links><openurl>$$Topenurl_article</openurl><openurlfulltext>$$Topenurlfull_article</openurlfulltext><thumbnail>$$Tsyndetics_thumb_exl</thumbnail><link.rule.ids>309,315,776,4036,27837</link.rule.ids><linktorsrc>$$Uhttp://hdl.handle.net/1854/LU-8705331$$EView_record_in_Ghent_University$$FView_record_in_$$GGhent_University$$Hfree_for_read</linktorsrc></links><search><creatorcontrib>Abroshan, Hossein</creatorcontrib><creatorcontrib>Devos, Jan</creatorcontrib><creatorcontrib>Poels, Geert</creatorcontrib><creatorcontrib>Laermans, Eric</creatorcontrib><title>A solution to minimise the success of phishing attempts using the effects of human behaviour and emotions on falling into a phishing scam</title><description>Phishing is a social engineering scam that can cause data loss, reputational damages, identity theft, money loss, and many other damages to people and organisations. Multiple studies showed the effects of human behaviour, such as risk-taking and decision making, on Internet users' security behaviour. Researchers also investigated how email users' behaviour can influence the success of a phishing attempt. Moreover, the number of phishing attempts has been increased rapidly since the beginning of the COVID-19 outbreak. Several studies demonstrated the effects of the COVID-19 pandemic on human behaviour, impacting phishing attempts' success. Organisations can use the results of these studies to find potential high-risk users by measuring the users' behaviour and emotions, which are associated with falling into a phishing scam. In this study, we have developed a solution and guideline using previous studies to identify risky users (i.e., those at risk of clicking on phishing links). The solution will then suggest or assigns proper mitigation actions for those users. The system contains measurement (psychological scales), scoring (machine learning), and mitigation modules that can become more mature and accurate over time. Furthermore, specific situations, such as the pandemic, is also considered in the solution- that is, when a situation like the COVID-19 pandemic happens, the solution will consider the impacted human emotions in finding the high-risk users and might suggest other types of mitigations. We have used regression models for the machine learning module. The proposed solution will help organisations focus more on high-risk users and reduce cyber risks. This solution, however, should be used in combination with technical anti-phishing systems and cybersecurity awareness training campaigns to achieve better results.</description><subject>Technology and Engineering</subject><fulltext>true</fulltext><rsrctype>conference_proceeding</rsrctype><creationdate>2021</creationdate><recordtype>conference_proceeding</recordtype><sourceid>ADGLB</sourceid><recordid>eNqdjU0KwjAQhbtxIeod5gKCWkS3IooHcB-mcdIM5Kd0Jt7BW9uI4N7V4_G9n3nzOoHkUJRzAs0QOXFkIVBPIMVaEoHsYPAsnlMPqEpxUIEi1dYYOUdWPzFfIiboyOOTcxkB0wMo5ro-8QQOQ6g1TtMX_lbFYlw2swkLrb66aHbXy_18W_eekprA3UgW1WRkg6P1_CRT-oo6MsfDZt-22_av0hsPQFvr</recordid><startdate>2021</startdate><enddate>2021</enddate><creator>Abroshan, Hossein</creator><creator>Devos, Jan</creator><creator>Poels, Geert</creator><creator>Laermans, Eric</creator><scope>ADGLB</scope></search><sort><creationdate>2021</creationdate><title>A solution to minimise the success of phishing attempts using the effects of human behaviour and emotions on falling into a phishing scam</title><author>Abroshan, Hossein ; Devos, Jan ; Poels, Geert ; Laermans, Eric</author></sort><facets><frbrtype>5</frbrtype><frbrgroupid>cdi_FETCH-ghent_librecat_oai_archive_ugent_be_87053313</frbrgroupid><rsrctype>conference_proceedings</rsrctype><prefilter>conference_proceedings</prefilter><language>eng</language><creationdate>2021</creationdate><topic>Technology and Engineering</topic><toplevel>online_resources</toplevel><creatorcontrib>Abroshan, Hossein</creatorcontrib><creatorcontrib>Devos, Jan</creatorcontrib><creatorcontrib>Poels, Geert</creatorcontrib><creatorcontrib>Laermans, Eric</creatorcontrib><collection>Ghent University Academic Bibliography</collection></facets><delivery><delcategory>Remote Search Resource</delcategory><fulltext>fulltext_linktorsrc</fulltext></delivery><addata><au>Abroshan, Hossein</au><au>Devos, Jan</au><au>Poels, Geert</au><au>Laermans, Eric</au><format>book</format><genre>proceeding</genre><ristype>CONF</ristype><atitle>A solution to minimise the success of phishing attempts using the effects of human behaviour and emotions on falling into a phishing scam</atitle><date>2021</date><risdate>2021</risdate><abstract>Phishing is a social engineering scam that can cause data loss, reputational damages, identity theft, money loss, and many other damages to people and organisations. Multiple studies showed the effects of human behaviour, such as risk-taking and decision making, on Internet users' security behaviour. Researchers also investigated how email users' behaviour can influence the success of a phishing attempt. Moreover, the number of phishing attempts has been increased rapidly since the beginning of the COVID-19 outbreak. Several studies demonstrated the effects of the COVID-19 pandemic on human behaviour, impacting phishing attempts' success. Organisations can use the results of these studies to find potential high-risk users by measuring the users' behaviour and emotions, which are associated with falling into a phishing scam. In this study, we have developed a solution and guideline using previous studies to identify risky users (i.e., those at risk of clicking on phishing links). The solution will then suggest or assigns proper mitigation actions for those users. The system contains measurement (psychological scales), scoring (machine learning), and mitigation modules that can become more mature and accurate over time. Furthermore, specific situations, such as the pandemic, is also considered in the solution- that is, when a situation like the COVID-19 pandemic happens, the solution will consider the impacted human emotions in finding the high-risk users and might suggest other types of mitigations. We have used regression models for the machine learning module. The proposed solution will help organisations focus more on high-risk users and reduce cyber risks. This solution, however, should be used in combination with technical anti-phishing systems and cybersecurity awareness training campaigns to achieve better results.</abstract><oa>free_for_read</oa></addata></record>
fulltext fulltext_linktorsrc
identifier
ispartof
issn
language eng
recordid cdi_ghent_librecat_oai_archive_ugent_be_8705331
source Ghent University Academic Bibliography
subjects Technology and Engineering
title A solution to minimise the success of phishing attempts using the effects of human behaviour and emotions on falling into a phishing scam
url https://sfx.bib-bvb.de/sfx_tum?ctx_ver=Z39.88-2004&ctx_enc=info:ofi/enc:UTF-8&ctx_tim=2025-02-01T13%3A29%3A01IST&url_ver=Z39.88-2004&url_ctx_fmt=infofi/fmt:kev:mtx:ctx&rfr_id=info:sid/primo.exlibrisgroup.com:primo3-Article-ghent_ADGLB&rft_val_fmt=info:ofi/fmt:kev:mtx:book&rft.genre=proceeding&rft.atitle=A%20solution%20to%20minimise%20the%20success%20of%20phishing%20attempts%20using%20the%20effects%20of%20human%20behaviour%20and%20emotions%20on%20falling%20into%20a%20phishing%20scam&rft.au=Abroshan,%20Hossein&rft.date=2021&rft_id=info:doi/&rft_dat=%3Cghent_ADGLB%3Eoai_archive_ugent_be_8705331%3C/ghent_ADGLB%3E%3Curl%3E%3C/url%3E&disable_directlink=true&sfx.directlink=off&sfx.report_link=0&rft_id=info:oai/&rft_id=info:pmid/&rfr_iscdi=true