Daniel Sturman , Elliot A. Bell , Jaime C. Auton , Georgia R. Breakey , Mark W. Wiggins
{"title":"The roles of phishing knowledge, cue utilization, and decision styles in phishing email detection","authors":"Daniel Sturman , Elliot A. Bell , Jaime C. Auton , Georgia R. Breakey , Mark W. Wiggins","doi":"10.1016/j.apergo.2024.104309","DOIUrl":null,"url":null,"abstract":"<div><p>This study investigated the roles of phishing knowledge, cue utilization, and decision styles in contributing to phishing email detection. Participants (<em>N</em> = 145) completed an online email sorting task, and measures of phishing knowledge, email decision styles, cue utilization, and email security awareness. Cue utilization was the only factor that uniquely predicted the capacity to discriminate phishing from genuine emails. Phishing knowledge was associated with greater phishing detection and a bias towards classifying all emails as phishing. A preference for intuitive decision making predicted lower detection of phishing emails, driven by a greater tendency to classify emails as genuine. These findings support the proposition that cue utilization is a distinct cognitive process that enables expert performance. The outcomes indicate that, in addition to increasing phishing knowledge and developing safe behavioral patterns, anti-phishing training needs to provide opportunities for trainees to develop meaningful cue associations.</p></div>","PeriodicalId":55502,"journal":{"name":"Applied Ergonomics","volume":"119 ","pages":"Article 104309"},"PeriodicalIF":3.1000,"publicationDate":"2024-05-09","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"https://www.sciencedirect.com/science/article/pii/S0003687024000863/pdfft?md5=33585251109a9dc65e75390e64382e39&pid=1-s2.0-S0003687024000863-main.pdf","citationCount":"0","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"Applied Ergonomics","FirstCategoryId":"5","ListUrlMain":"https://www.sciencedirect.com/science/article/pii/S0003687024000863","RegionNum":2,"RegionCategory":"工程技术","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"Q2","JCRName":"ENGINEERING, INDUSTRIAL","Score":null,"Total":0}
引用次数: 0
Abstract
This study investigated the roles of phishing knowledge, cue utilization, and decision styles in contributing to phishing email detection. Participants (N = 145) completed an online email sorting task, and measures of phishing knowledge, email decision styles, cue utilization, and email security awareness. Cue utilization was the only factor that uniquely predicted the capacity to discriminate phishing from genuine emails. Phishing knowledge was associated with greater phishing detection and a bias towards classifying all emails as phishing. A preference for intuitive decision making predicted lower detection of phishing emails, driven by a greater tendency to classify emails as genuine. These findings support the proposition that cue utilization is a distinct cognitive process that enables expert performance. The outcomes indicate that, in addition to increasing phishing knowledge and developing safe behavioral patterns, anti-phishing training needs to provide opportunities for trainees to develop meaningful cue associations.
期刊介绍:
Applied Ergonomics is aimed at ergonomists and all those interested in applying ergonomics/human factors in the design, planning and management of technical and social systems at work or leisure. Readership is truly international with subscribers in over 50 countries. Professionals for whom Applied Ergonomics is of interest include: ergonomists, designers, industrial engineers, health and safety specialists, systems engineers, design engineers, organizational psychologists, occupational health specialists and human-computer interaction specialists.