Go to:
Logótipo
Comuta visibilidade da coluna esquerda
Você está em: Start > Publications > View > Persuasion: How phishing emails can influence users and bypass security measures
Publication

Publications

Persuasion: How phishing emails can influence users and bypass security measures

Title
Persuasion: How phishing emails can influence users and bypass security measures
Type
Article in International Scientific Journal
Year
2019
Authors
ferreira, a
(Author)
FMUP
View Personal Page You do not have permissions to view the institutional email. Search for Participant Publications View Authenticus page View ORCID page
Teles, S
(Author)
Other
The person does not belong to the institution. The person does not belong to the institution. The person does not belong to the institution. View Authenticus page Without ORCID
Journal
Vol. 125
Pages: 19-31
ISSN: 1071-5819
Publisher: Elsevier
Other information
Authenticus ID: P-00Q-BKW
Abstract (EN): Phishing is a very dangerous form of social engineering with the aim to deceive people into disclosing private/confidential information. Despite widespread warnings and means to educate users to identify phishing messages, these are still a prevalent practice and a lucrative business. The authors believe that persuasion, as a style of human communication designed to influence others, has a central role in successful digital scams. Research on persuasion applied to phishing emails is scarce and tends to build on Cialdini's work alone. Only a single study has proposed a list of merged principles from three different perspectives but it has methodological limitations regarding the analysis' performance by a single researcher and the testing of principles in a small, not validated sample of phishing emails. This paper aims to fill those gaps by building on Cialdini's, Gragg's and Stajano & Wilson's works to derive a unique list of Principles of Persuasion in Social Engineering (PPSE), resulting from the application of the relational method by two independent researchers. The PPSE are identified, by two independent researchers (Kappa > 0.789) on a sample of phishing email subject lines (N = 194), dated from 2008 to 2017 and randomly selected from a reliable phishing archive (millersmiles.co.uk ). A thematic content analysis, together with the sample characterization in terms of visual elements and targeted content, revealed that the most prominent principles of persuasion in phishing emails were 'Authority', 'Strong Affect', 'Integrity' and `Reciprocation'. The larger percentage of references with the presence of visual elements was found for the `Strong Affect' principle. The use of the pronouns 'you' and 'your' was more evident for the categories 'Strong Affect' and 'Authority', while the employment of the pronouns 'we, us, our' was more frequent in the `Reciprocation' principle. This paper constitutes a step further in understanding the use of principles of persuasion in phishing emails with future applications on how their recognition can be automated.
Language: English
Type (Professor's evaluation): Scientific
No. of pages: 13
Documents
We could not find any documents associated to the publication.
Related Publications

Of the same authors

Willingness to institutionalize a relative with dementia: a web-platform assessment with the Portuguese adapted version of the Desire-to-Institutionalize Scale (2024)
Article in International Scientific Journal
Teles, S; Napolskij, MS; Ribeiro, O; Alves, S; Freitas A; ferreira, a; Constança Paúl
User feedback and usability testing of an online training and support program for dementia carers (2021)
Article in International Scientific Journal
Teles, S; Constança Paúl; Lima, P; Chilro, R; ferreira, a
SoTRAACE for smart security in ambient assisted living (2019)
Article in International Scientific Journal
ferreira, a; Teles, S; Vieira Marques, P
Online training and support program (iSupport) for informal dementia caregivers: protocol for an intervention study in Portugal (2020)
Article in International Scientific Journal
Teles, S; ferreira, a; Seeher, K; Freel, S; Constança Paúl
Dementia caregivers training needs and preferences for online interventions: A mixed-methods study (2020)
Article in International Scientific Journal
Teles, S; Constança Paúl; Napolskij, MS; ferreira, a

See all (13)

Of the same journal

Information, uncertainty and the manipulability of artificial intelligence autonomous vehicles systems (2019)
Article in International Scientific Journal
Osorio, A; Alberto A. Pinto
Recommend this page Top
Copyright 1996-2025 © Faculdade de Direito da Universidade do Porto  I Terms and Conditions  I Acessibility  I Index A-Z
Page created on: 2025-08-13 at 11:58:41 | Privacy Policy | Personal Data Protection Policy | Whistleblowing