2019Unpublished venueRequires access

Mitigating Phishing Attacks

Alex Sumner, Xiaohong Yuan

Open publisher page 31 citations

Abstract

Social engineering is the process of getting a person to provide a service or complete a task that may give away private or confidential information. Phishing is the most common type of social engineering. In phishing, an attacker poses as a trustworthy source in an attempt to have the victim release personal or private information. Spear phishing is a popular type of phishing attack where the attacker provides information retaining to a select few targets rather than generic information for a mass amount of targets. This paper provides an overview of social engineering attacks, the detection methods of social engineering and phishing attacks, the education and training techniques for preventing social engineering and phishing attacks, as well as the susceptibility of users to social engineering and phishing attacks.

About this research paper

What this paper is about

Social engineering is the process of getting a person to provide a service or complete a task that may give away private or confidential information. Phishing is the most common type of social engineering. In phishing, an attacker poses as a trustworthy source in an attempt to have the victim release personal or private information. Spear phishing is a popular type of phishing attack where the attacker provides information retaining to a select few targets rather than generic information for a mass amount of targets. This paper provides an overview of social engineering attacks, the detection methods of social engineering and phishing attacks, the education and training techniques for preventing social engineering and phishing attacks, as well as the susceptibility of users to social engineering and phishing attacks.

Why it matters

OpenAlex reports 31 citations for this work. Citation counts describe recorded attention and do not establish research quality.

Key contribution

A contribution statement is not available in the OpenAlex record.

Method / approach

Method details are not available in the OpenAlex metadata.

Main findings

Findings are not separately available in the OpenAlex metadata.

Limitations

Limitations are not available in the OpenAlex metadata.

Applications

Application details are not available in the OpenAlex metadata.

Available abstract

Social engineering is the process of getting a person to provide a service or complete a task that may give away private or confidential information. Phishing is the most common type of social engineering. In phishing, an attacker poses as a trustworthy source in an attempt to have the victim release personal or private information. Spear phishing is a popular type of phishing attack where the attacker provides information retaining to a select few targets rather than generic information for a mass amount of targets. This paper provides an overview of social engineering attacks, the detection methods of social engineering and phishing attacks, the education and training techniques for preventing social engineering and phishing attacks, as well as the susceptibility of users to social engineering and phishing attacks.

Key concepts: Phishing, Social engineering (security), Computer security, Confidentiality, Computer science, Internet privacy, Trustworthiness, Task (project management)

Related papers

Back to paper searchBrowse research topicsOriginal source
Mitigating Phishing Attacks — Research Paper | ScholarLens