Phishing Preventing in one HEI : Case Study with Students in one Higher Education Institution

Eduardo Marques, C. Sousa
{"title":"Phishing Preventing in one HEI : Case Study with Students in one Higher Education Institution","authors":"Eduardo Marques, C. Sousa","doi":"10.23919/CISTI58278.2023.10211824","DOIUrl":null,"url":null,"abstract":"Social Engineering attacks, in particular the phishing attack, have seen an increase and greater depth in the way users are approached to achieve their goals. Users of Higher Education Institutions are specific cases, and it is important to know their perception, in particular that of students about these actions. The use of controlled attacks has been widely used, if possible, on a regular basis, to know the reality of an organization and, in this way, ways of acting can be planned to better defend and prepare users for current and future engineering attacks. Social. This work sought, through this simulated attack approach and an awareness campaign, to assess the state of users in terms of awareness of phishing and to propose and evaluate preventive measures for its improvement. Among the results found, it is identified that the most vulnerable groups are younger students, and students from different areas of study do not present relevant differences in the perception of phishing. Furthermore, the use of simple documentation and information techniques for users did not significantly improve perception, making it necessary to explore new ways of preparing users for phishing.","PeriodicalId":121747,"journal":{"name":"2023 18th Iberian Conference on Information Systems and Technologies (CISTI)","volume":"37 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2023-06-20","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"0","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"2023 18th Iberian Conference on Information Systems and Technologies (CISTI)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.23919/CISTI58278.2023.10211824","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 0

Abstract

Social Engineering attacks, in particular the phishing attack, have seen an increase and greater depth in the way users are approached to achieve their goals. Users of Higher Education Institutions are specific cases, and it is important to know their perception, in particular that of students about these actions. The use of controlled attacks has been widely used, if possible, on a regular basis, to know the reality of an organization and, in this way, ways of acting can be planned to better defend and prepare users for current and future engineering attacks. Social. This work sought, through this simulated attack approach and an awareness campaign, to assess the state of users in terms of awareness of phishing and to propose and evaluate preventive measures for its improvement. Among the results found, it is identified that the most vulnerable groups are younger students, and students from different areas of study do not present relevant differences in the perception of phishing. Furthermore, the use of simple documentation and information techniques for users did not significantly improve perception, making it necessary to explore new ways of preparing users for phishing.
一所高等教育机构的网络钓鱼预防:以一所高等教育机构的学生为例研究
社会工程攻击,特别是网络钓鱼攻击,在用户达到其目标的方式上已经有所增加和深入。高等教育机构的使用者是具体的案例,了解他们的看法,特别是学生对这些行为的看法是很重要的。控制攻击的使用已经被广泛使用,如果可能的话,在常规的基础上,了解组织的现实情况,通过这种方式,可以计划行动的方式,以更好地防御和为用户准备当前和未来的工程攻击。社会。这项工作旨在通过这种模拟攻击方法和提高认识活动,评估用户对网络钓鱼的认识状况,并提出和评估改进网络钓鱼的预防措施。结果发现,最脆弱的群体是年龄较小的学生,来自不同学习领域的学生对网络钓鱼的感知没有相关差异。此外,对用户使用简单的文件和信息技术并没有显著改善感知,因此有必要探索使用户为网络钓鱼做好准备的新方法。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
求助全文
约1分钟内获得全文 求助全文
来源期刊
自引率
0.00%
发文量
0
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
确定
请完成安全验证×
copy
已复制链接
快去分享给好友吧!
我知道了
右上角分享
点击右上角分享
0
联系我们:info@booksci.cn Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。 Copyright © 2023 布克学术 All rights reserved.
京ICP备2023020795号-1
ghs 京公网安备 11010802042870号
Book学术文献互助
Book学术文献互助群
群 号:604180095
Book学术官方微信