Non-Technical Cyber-Attacks and International Cybersecurity: The Case of Social Engineering

Nezir Akyesilmen, Amal Alhosban
{"title":"Non-Technical Cyber-Attacks and International Cybersecurity: The Case of Social Engineering","authors":"Nezir Akyesilmen, Amal Alhosban","doi":"10.21547/jss.1346291","DOIUrl":null,"url":null,"abstract":"This paper aims to provide an overview of social engineering attacks, and their impacts on cybersecurity, including national and international security, and figures out detection techniques, and major methods for countermeasure. How do social engineering attacks affect national and international security? And why is it so hard to cope with them? Seeking for answers to these questions, this paper applies qualitative research methods particularly literature review and case analysis. While qualitative research methods are predominantly employed, quantitative methods will also be utilized when deemed essential. Social engineering attacks, also referred to as online fraud, are a type of attack that typically necessitates minimal or no technical knowledge. Social engineering attacks, instead benefit from the weaknesses and mistakes of individuals, since the user is accepted as the weakest link in cybersecurity. Many studies have shown that the vast majority of successful cyber-attacks in the digital world are social engineering (SE) because countering them is more difficult than countering technical cyber-attacks. Based on the analysis of some major cyber-attacks such as the intervention in the 2016 US Presidential elections, the hacking of CIA director, John Brennan in 2015, and Stuxnet in 2010, the paper figures out that social engineering attacks have a tremendous impact on cybersecurity on the individual, institutional, societal, national, and international levels. Penetration tests and training for raising awareness are the prolific ways to mitigate social engineering attacks.","PeriodicalId":55743,"journal":{"name":"Gaziantep University Journal of Social Sciences","volume":"23 8","pages":""},"PeriodicalIF":0.0000,"publicationDate":"2024-01-25","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"0","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"Gaziantep University Journal of Social Sciences","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.21547/jss.1346291","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 0

Abstract

This paper aims to provide an overview of social engineering attacks, and their impacts on cybersecurity, including national and international security, and figures out detection techniques, and major methods for countermeasure. How do social engineering attacks affect national and international security? And why is it so hard to cope with them? Seeking for answers to these questions, this paper applies qualitative research methods particularly literature review and case analysis. While qualitative research methods are predominantly employed, quantitative methods will also be utilized when deemed essential. Social engineering attacks, also referred to as online fraud, are a type of attack that typically necessitates minimal or no technical knowledge. Social engineering attacks, instead benefit from the weaknesses and mistakes of individuals, since the user is accepted as the weakest link in cybersecurity. Many studies have shown that the vast majority of successful cyber-attacks in the digital world are social engineering (SE) because countering them is more difficult than countering technical cyber-attacks. Based on the analysis of some major cyber-attacks such as the intervention in the 2016 US Presidential elections, the hacking of CIA director, John Brennan in 2015, and Stuxnet in 2010, the paper figures out that social engineering attacks have a tremendous impact on cybersecurity on the individual, institutional, societal, national, and international levels. Penetration tests and training for raising awareness are the prolific ways to mitigate social engineering attacks.
非技术性网络攻击与国际网络安全:社会工程案例
本文旨在概述社会工程学攻击及其对网络安全(包括国家和国际安全)的影响,并阐明检测技术和主要应对方法。社会工程学攻击如何影响国家和国际安全?为何难以应对?为了寻求这些问题的答案,本文采用了定性研究方法,特别是文献综述和案例分析。虽然主要采用定性研究方法,但在必要时也会采用定量研究方法。社会工程学攻击也被称为在线欺诈,是一种通常只需极少或无需技术知识的攻击类型。由于用户被认为是网络安全中最薄弱的环节,社会工程学攻击反而从个人的弱点和错误中获益。许多研究表明,数字世界中绝大多数成功的网络攻击都是社会工程学(SE)攻击,因为反击社会工程学攻击比反击技术性网络攻击更加困难。基于对一些重大网络攻击的分析,如 2016 年美国总统大选的干预、2015 年中情局局长约翰-布伦南被黑客攻击以及 2010 年的 Stuxnet,论文指出社会工程学攻击在个人、机构、社会、国家和国际层面对网络安全产生了巨大影响。渗透测试和提高意识的培训是缓解社会工程学攻击的有效方法。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
求助全文
约1分钟内获得全文 求助全文
来源期刊
自引率
0.00%
发文量
152
审稿时长
6 weeks
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
确定
请完成安全验证×
copy
已复制链接
快去分享给好友吧!
我知道了
右上角分享
点击右上角分享
0
联系我们:info@booksci.cn Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。 Copyright © 2023 布克学术 All rights reserved.
京ICP备2023020795号-1
ghs 京公网安备 11010802042870号
Book学术文献互助
Book学术文献互助群
群 号:481959085
Book学术官方微信