• Aucun résultat trouvé

A solution to minimise the success of phishing attempts using the effects of human behaviour and emotions on falling into a phishing scam

N/A
N/A
Protected

Academic year: 2022

Partager "A solution to minimise the success of phishing attempts using the effects of human behaviour and emotions on falling into a phishing scam"

Copied!
1
0
0

Texte intégral

(1)

A solution to minimise the success of phishing attempts using the effects of human behaviour and emotions on falling into a phishing scam.

Phishing is a social engineering scam that can cause data loss, reputational damages, identity theft, money loss, and many other damages to people and organisations. Multiple studies showed the effects of human behaviour, such as risk-taking and decision making, on Internet users' security behaviour.

Researchers also investigated how email users' behaviour can influence the success of a phishing attempt. Moreover, the number of phishing attempts has been increased rapidly since the beginning of the COVID-19 outbreak. Several studies demonstrated the effects of the COVID-19 pandemic on human behaviour, impacting phishing attempts' success.

Organisations can use the results of these studies to find potential high-risk users by measuring the users' behaviour and emotions, which are associated with falling into a phishing scam. In this study, we have developed a solution and guideline using previous studies to identify risky users (i.e., those at risk of clicking on phishing links). The solution will then suggest or assigns proper mitigation actions for those users. The system contains measurement (psychological scales), scoring (machine learning), and mitigation modules that can become more mature and accurate over time. Furthermore, specific situations, such as the pandemic, is also considered in the solution- that is, when a situation like the COVID-19 pandemic happens, the solution will consider the impacted human emotions in finding the high-risk users and might suggest other types of mitigations. We have used regression models for the machine learning module.

The proposed solution will help organisations focus more on high-risk users and reduce cyber risks. This solution, however, should be used in combination with technical anti-phishing systems and cybersecurity awareness training campaigns to achieve better results.

Références

Documents relatifs

Then, the author proposed a complete type inference algorithm for Wand's system [Rem89], but it was formalized only in the case of a nite set of labels (a previous solution given

This paper describes a study that was performed to assess the effects of risk-taking behaviour, decision-making style, and demographic factors (age, gender, and education) on how

In this paper, we propose a nonlocal model for linear steady Stokes equation with no-slip boundary condition.. The main idea is to use volume constraint to enforce the no-slip

Non-COVID-19 patients of all types, including patients with chronic respiratory disease, were affected right away by the impact of the pandemic.. Outpatient clinics

INPUT: 331M owl:sameAs (179.67M terms) Assign each term to an identity set.. (algorithm described in

Objective To review the current literature on cutaneous diseases associated with the global coronavirus disease 2019 (COVID-19) pandemic, and to provide a general overview for

Even though the pendelluft air is lower than the anatomical dead space (including the endotracheal tube volume) and arises at the end of the inspiration of the test-lung/patient

(a) the dependent variable is the cryptocurrency daily average returns; (b) the independent variable was COVID-19 global index (COVID-19), developed to measure the effect of