An examination of susceptibility to spear phishing cyber attacks in non-English speaking communities
Тип публикации: Journal Article
Дата публикации: 2020-12-01
scimago Q1
wos Q2
БС1
SJR: 0.932
CiteScore: 10.0
Impact factor: 3.7
ISSN: 22142134, 22142126
Computer Networks and Communications
Software
Safety, Risk, Reliability and Quality
Краткое описание
Purpose Spear phishing is a fraudulent practice that targets specific and well-researched users in an organization to collect their credentials. Previous studies have addressed the underlying drivers that significantly influence susceptibility to spear phishing. However, findings may not be generalized to other cultures and environments such as the developing Non-English-speaking countries. To fill this knowledge gap, this research investigated the drivers that affect susceptibility to spear phishing in the Middle Eastern culture. We proposed and tested a theoretical model that explains users' behavior toward phishing material in the context of Non-English-speaking countries. Design/Methodology/Approach We created the proposed model relying on the perceived risk theory, the theory of planned behavior, and the OSIR decision making model. The proposed model addressed the impact of information privacy risks, information security risks, and information security knowledge on the susceptibility to spear phishing attacks through the moderating trust construct. The study was conducted in Jordan, a developing and Non-English-speaking country in the Middle East. We designed a lab experiment to evaluate the robustness of the proposed model based on a multistage research, where 83 university students used a phishing website then answered a related survey. Collected data were empirically tested and evaluated using Partial Least Square Analysis and Structural Equation Modeling. Findings The results demonstrated the influence of the identified factors on the susceptibility to spear phishing. The study may provide an assistance in evaluating and selecting tools, methods and features for handling targeted types of phishing. Originality/Value There are several novel aspects in this study. 1) the experimental nature of study, where we used a real-life spear phishing scenario. 2) the nature of the targeted websites. We created spoofed pages of two webpages that provide academic activities, where students’ level of trust in those websites is likely higher than other websites. 3) the investigation of the mediation role of trust construct, particularly within a university environment, is a new direction in susceptibility to spear phishing. Unlike existing models that measure the direct effect of personality characteristics on phishing susceptibility, our model introduces trust attitude as an aggregation of positive and negative security-privacy interpretations. Finally, the study was conducted in a developing country environment where the Arabic Language is used in initiating and executing the attack.
Найдено
Ничего не найдено, попробуйте изменить настройки фильтра.
Найдено
Ничего не найдено, попробуйте изменить настройки фильтра.
Топ-30
Журналы
|
1
2
|
|
|
Computers and Security
2 публикации, 11.11%
|
|
|
International Journal of Web Portals
1 публикация, 5.56%
|
|
|
Sensors
1 публикация, 5.56%
|
|
|
IEEE Access
1 публикация, 5.56%
|
|
|
Computational Intelligence and Neuroscience
1 публикация, 5.56%
|
|
|
AIP Conference Proceedings
1 публикация, 5.56%
|
|
|
ACM Transactions on Computer-Human Interaction
1 публикация, 5.56%
|
|
|
Proceedings of the IEEE
1 публикация, 5.56%
|
|
|
Technology in Society
1 публикация, 5.56%
|
|
|
Information Processing and Management
1 публикация, 5.56%
|
|
|
PeerJ Computer Science
1 публикация, 5.56%
|
|
|
IFIP Advances in Information and Communication Technology
1 публикация, 5.56%
|
|
|
Information and Computer Security
1 публикация, 5.56%
|
|
|
Intelligent Decision Technologies
1 публикация, 5.56%
|
|
|
Lecture Notes in Computer Science
1 публикация, 5.56%
|
|
|
Cogent Business and Management
1 публикация, 5.56%
|
|
|
1
2
|
Издатели
|
1
2
3
4
|
|
|
Elsevier
4 публикации, 22.22%
|
|
|
Institute of Electrical and Electronics Engineers (IEEE)
3 публикации, 16.67%
|
|
|
Springer Nature
2 публикации, 11.11%
|
|
|
IGI Global
1 публикация, 5.56%
|
|
|
MDPI
1 публикация, 5.56%
|
|
|
Hindawi Limited
1 публикация, 5.56%
|
|
|
AIP Publishing
1 публикация, 5.56%
|
|
|
Association for Computing Machinery (ACM)
1 публикация, 5.56%
|
|
|
PeerJ
1 публикация, 5.56%
|
|
|
Emerald
1 публикация, 5.56%
|
|
|
SAGE
1 публикация, 5.56%
|
|
|
Taylor & Francis
1 публикация, 5.56%
|
|
|
1
2
3
4
|
- Мы не учитываем публикации, у которых нет DOI.
- Статистика публикаций обновляется еженедельно.
Вы ученый?
Создайте профиль, чтобы получать персональные рекомендации коллег, конференций и новых статей.
Метрики
19
Всего цитирований:
19
Цитирований c 2024:
13
(72.22%)
Цитировать
ГОСТ |
RIS |
BibTex
Цитировать
ГОСТ
Скопировать
AL-EROUD A. F. et al. An examination of susceptibility to spear phishing cyber attacks in non-English speaking communities // Journal of Information Security and Applications. 2020. Vol. 55. p. 102614.
ГОСТ со всеми авторами (до 50)
Скопировать
AL-EROUD A. F., Abu-Shanab E., Alsharo M., Alshboul Y. An examination of susceptibility to spear phishing cyber attacks in non-English speaking communities // Journal of Information Security and Applications. 2020. Vol. 55. p. 102614.
Цитировать
RIS
Скопировать
TY - JOUR
DO - 10.1016/j.jisa.2020.102614
UR - https://doi.org/10.1016/j.jisa.2020.102614
TI - An examination of susceptibility to spear phishing cyber attacks in non-English speaking communities
T2 - Journal of Information Security and Applications
AU - AL-EROUD, AHMED F.
AU - Abu-Shanab, Emad
AU - Alsharo, Mohammad
AU - Alshboul, Yazan
PY - 2020
DA - 2020/12/01
PB - Elsevier
SP - 102614
VL - 55
SN - 2214-2134
SN - 2214-2126
ER -
Цитировать
BibTex (до 50 авторов)
Скопировать
@article{2020_AL-EROUD,
author = {AHMED F. AL-EROUD and Emad Abu-Shanab and Mohammad Alsharo and Yazan Alshboul},
title = {An examination of susceptibility to spear phishing cyber attacks in non-English speaking communities},
journal = {Journal of Information Security and Applications},
year = {2020},
volume = {55},
publisher = {Elsevier},
month = {dec},
url = {https://doi.org/10.1016/j.jisa.2020.102614},
pages = {102614},
doi = {10.1016/j.jisa.2020.102614}
}