A systematic review and research challenges on phishing cyberattacks from an electroencephalography and gaze-based perspective

Q1 Social Sciences
George A. Thomopoulos, Dimitrios P. Lyras, Christos A. Fidas
{"title":"A systematic review and research challenges on phishing cyberattacks from an electroencephalography and gaze-based perspective","authors":"George A. Thomopoulos, Dimitrios P. Lyras, Christos A. Fidas","doi":"10.1007/s00779-024-01794-9","DOIUrl":null,"url":null,"abstract":"<p>Phishing is one of the most important security threats in modern information systems causing different levels of damages to end-users and service providers such as financial and reputational losses. State-of-the-art anti-phishing research is highly fragmented and monolithic and does not address the problem from a pervasive computing perspective. In this survey, we aim to contribute to the existing literature by providing a systematic review of existing experimental phishing research that employs EEG and eye-tracking methods within multi-modal and multi-sensory interaction environments. The main research objective of this review is to examine articles that contain results of at least one EEG-based and/or eye-tracking-based experimental setup within a phishing context. The database search with specific search criteria yielded 651 articles from which, after the identification and the screening process, 42 articles were examined as per the execution of experiments using EEG or eye-tracking technologies in the context of phishing, resulting to a total of 18 distinct papers that were included in the analysis. This survey is approaching the subject across the following pillars: a) the experimental design practices with an emphasis on the applied EEG and eye-tracking acquisition protocols, b) the artificial intelligence and signal preprocessing techniques that were applied in those experiments, and finally, c) the phishing attack types examined. We also provide a roadmap for future research in the field by suggesting ideas on how to combine state-of-the-art gaze-based mechanisms with EEG technologies for advancing phishing research. This leads to a discussion on the best practices for designing EEG and gaze-based frameworks.</p>","PeriodicalId":54628,"journal":{"name":"Personal and Ubiquitous Computing","volume":"26 1","pages":""},"PeriodicalIF":0.0000,"publicationDate":"2024-03-19","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"0","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"Personal and Ubiquitous Computing","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1007/s00779-024-01794-9","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"Q1","JCRName":"Social Sciences","Score":null,"Total":0}
引用次数: 0

Abstract

Phishing is one of the most important security threats in modern information systems causing different levels of damages to end-users and service providers such as financial and reputational losses. State-of-the-art anti-phishing research is highly fragmented and monolithic and does not address the problem from a pervasive computing perspective. In this survey, we aim to contribute to the existing literature by providing a systematic review of existing experimental phishing research that employs EEG and eye-tracking methods within multi-modal and multi-sensory interaction environments. The main research objective of this review is to examine articles that contain results of at least one EEG-based and/or eye-tracking-based experimental setup within a phishing context. The database search with specific search criteria yielded 651 articles from which, after the identification and the screening process, 42 articles were examined as per the execution of experiments using EEG or eye-tracking technologies in the context of phishing, resulting to a total of 18 distinct papers that were included in the analysis. This survey is approaching the subject across the following pillars: a) the experimental design practices with an emphasis on the applied EEG and eye-tracking acquisition protocols, b) the artificial intelligence and signal preprocessing techniques that were applied in those experiments, and finally, c) the phishing attack types examined. We also provide a roadmap for future research in the field by suggesting ideas on how to combine state-of-the-art gaze-based mechanisms with EEG technologies for advancing phishing research. This leads to a discussion on the best practices for designing EEG and gaze-based frameworks.

Abstract Image

从脑电图和凝视角度看网络钓鱼攻击的系统回顾和研究挑战
网络钓鱼是现代信息系统中最重要的安全威胁之一,会给最终用户和服务提供商造成不同程度的损失,如经济损失和名誉损失。最先进的反网络钓鱼研究非常分散和单一,没有从普适计算的角度来解决这个问题。在本调查中,我们旨在对现有的实验性网络钓鱼研究进行系统回顾,这些研究在多模态和多感官交互环境中采用了脑电图和眼动跟踪方法,从而为现有文献做出贡献。本综述的主要研究目标是研究包含至少一种基于脑电图和/或眼动跟踪的网络钓鱼实验设置结果的文章。根据特定的搜索标准进行数据库搜索后,共获得 651 篇文章,经过识别和筛选后,根据在网络钓鱼背景下使用脑电图或眼动跟踪技术进行实验的情况,对其中的 42 篇文章进行了研究,最终共有 18 篇不同的论文被纳入分析范围。本调查从以下几个方面着手:a) 实验设计实践,重点是所应用的脑电图和眼动跟踪采集协议;b) 在这些实验中应用的人工智能和信号预处理技术;最后,c) 所研究的网络钓鱼攻击类型。我们还为该领域的未来研究提供了路线图,就如何将最先进的基于凝视的机制与脑电图技术相结合以推进网络钓鱼研究提出了建议。这将引出对设计脑电图和基于凝视的框架的最佳实践的讨论。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
求助全文
约1分钟内获得全文 求助全文
来源期刊
Personal and Ubiquitous Computing
Personal and Ubiquitous Computing 工程技术-电信学
CiteScore
6.60
自引率
0.00%
发文量
35
审稿时长
6-12 weeks
期刊介绍: Personal and Ubiquitous Computing publishes peer-reviewed multidisciplinary research on personal and ubiquitous technologies and services. The journal provides a global perspective on new developments in research in areas including user experience for advanced digital technologies, the Internet of Things, big data, social technologies and mobile and wearable devices.
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
确定
请完成安全验证×
copy
已复制链接
快去分享给好友吧!
我知道了
右上角分享
点击右上角分享
0
联系我们:info@booksci.cn Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。 Copyright © 2023 布克学术 All rights reserved.
京ICP备2023020795号-1
ghs 京公网安备 11010802042870号
Book学术文献互助
Book学术文献互助群
群 号:481959085
Book学术官方微信