Nisreen Innab, Haifa Al-Rashoud, R. AlMahawes, Wauood Al-Shehri
{"title":"利雅得政府和私人组织有效反网络钓鱼意识和培训的评估","authors":"Nisreen Innab, Haifa Al-Rashoud, R. AlMahawes, Wauood Al-Shehri","doi":"10.1109/NCG.2018.8593144","DOIUrl":null,"url":null,"abstract":"Phishing is a form of attacks that conduct by tricking the users to be as legitimate entity user. With a huge usage of electronic mail, email phishing attacks become the common type of electronic phishing. As a result, the organizations become an attractive target to the attackers in order to steal the organization’s sensitive information or to do malicious actions. From this point, the anti-phishing awareness and training is considered as a persistent need. In this paper, the researchers focus on the electronic mail phishing that target governmental and private organizations in Riyadh. The researchers evaluate the current security training and awareness of employees in Riyadh through a survey. This paper discusses the result of measuring the electronic mail phishing awareness of the governmental and private organization in Riyadh. Besides that, it also measures the awareness of the governmental and private organizations about the importance of training and awareness against electronic mail phishing. However, there does appear to the effective awareness training in the governmental organizations more than the private one.","PeriodicalId":305464,"journal":{"name":"2018 21st Saudi Computer Society National Computer Conference (NCC)","volume":"203 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2018-04-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"5","resultStr":"{\"title\":\"Evaluation of the Effective Anti-Phishing Awareness and Training in Governmental and Private Organizations in Riyadh\",\"authors\":\"Nisreen Innab, Haifa Al-Rashoud, R. AlMahawes, Wauood Al-Shehri\",\"doi\":\"10.1109/NCG.2018.8593144\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"Phishing is a form of attacks that conduct by tricking the users to be as legitimate entity user. With a huge usage of electronic mail, email phishing attacks become the common type of electronic phishing. As a result, the organizations become an attractive target to the attackers in order to steal the organization’s sensitive information or to do malicious actions. From this point, the anti-phishing awareness and training is considered as a persistent need. In this paper, the researchers focus on the electronic mail phishing that target governmental and private organizations in Riyadh. The researchers evaluate the current security training and awareness of employees in Riyadh through a survey. This paper discusses the result of measuring the electronic mail phishing awareness of the governmental and private organization in Riyadh. Besides that, it also measures the awareness of the governmental and private organizations about the importance of training and awareness against electronic mail phishing. However, there does appear to the effective awareness training in the governmental organizations more than the private one.\",\"PeriodicalId\":305464,\"journal\":{\"name\":\"2018 21st Saudi Computer Society National Computer Conference (NCC)\",\"volume\":\"203 1\",\"pages\":\"0\"},\"PeriodicalIF\":0.0000,\"publicationDate\":\"2018-04-01\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"\",\"citationCount\":\"5\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"2018 21st Saudi Computer Society National Computer Conference (NCC)\",\"FirstCategoryId\":\"1085\",\"ListUrlMain\":\"https://doi.org/10.1109/NCG.2018.8593144\",\"RegionNum\":0,\"RegionCategory\":null,\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"\",\"PubModel\":\"\",\"JCR\":\"\",\"JCRName\":\"\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"2018 21st Saudi Computer Society National Computer Conference (NCC)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/NCG.2018.8593144","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
Evaluation of the Effective Anti-Phishing Awareness and Training in Governmental and Private Organizations in Riyadh
Phishing is a form of attacks that conduct by tricking the users to be as legitimate entity user. With a huge usage of electronic mail, email phishing attacks become the common type of electronic phishing. As a result, the organizations become an attractive target to the attackers in order to steal the organization’s sensitive information or to do malicious actions. From this point, the anti-phishing awareness and training is considered as a persistent need. In this paper, the researchers focus on the electronic mail phishing that target governmental and private organizations in Riyadh. The researchers evaluate the current security training and awareness of employees in Riyadh through a survey. This paper discusses the result of measuring the electronic mail phishing awareness of the governmental and private organization in Riyadh. Besides that, it also measures the awareness of the governmental and private organizations about the importance of training and awareness against electronic mail phishing. However, there does appear to the effective awareness training in the governmental organizations more than the private one.