Saltar para:
Logótipo
Comuta visibilidade da coluna esquerda
Você está em: Início > Publicações > Visualização > Persuasion: How phishing emails can influence users and bypass security measures

Publicações

Persuasion: How phishing emails can influence users and bypass security measures

Título
Persuasion: How phishing emails can influence users and bypass security measures
Tipo
Artigo em Revista Científica Internacional
Ano
2019
Autores
ferreira, a
(Autor)
FMUP
Teles, S
(Autor)
Outra
A pessoa não pertence à instituição. A pessoa não pertence à instituição. A pessoa não pertence à instituição. Ver página do Authenticus Sem ORCID
Revista
Vol. 125
Páginas: 19-31
ISSN: 1071-5819
Editora: Elsevier
Outras Informações
ID Authenticus: P-00Q-BKW
Abstract (EN): Phishing is a very dangerous form of social engineering with the aim to deceive people into disclosing private/confidential information. Despite widespread warnings and means to educate users to identify phishing messages, these are still a prevalent practice and a lucrative business. The authors believe that persuasion, as a style of human communication designed to influence others, has a central role in successful digital scams. Research on persuasion applied to phishing emails is scarce and tends to build on Cialdini's work alone. Only a single study has proposed a list of merged principles from three different perspectives but it has methodological limitations regarding the analysis' performance by a single researcher and the testing of principles in a small, not validated sample of phishing emails. This paper aims to fill those gaps by building on Cialdini's, Gragg's and Stajano & Wilson's works to derive a unique list of Principles of Persuasion in Social Engineering (PPSE), resulting from the application of the relational method by two independent researchers. The PPSE are identified, by two independent researchers (Kappa > 0.789) on a sample of phishing email subject lines (N = 194), dated from 2008 to 2017 and randomly selected from a reliable phishing archive (millersmiles.co.uk ). A thematic content analysis, together with the sample characterization in terms of visual elements and targeted content, revealed that the most prominent principles of persuasion in phishing emails were 'Authority', 'Strong Affect', 'Integrity' and `Reciprocation'. The larger percentage of references with the presence of visual elements was found for the `Strong Affect' principle. The use of the pronouns 'you' and 'your' was more evident for the categories 'Strong Affect' and 'Authority', while the employment of the pronouns 'we, us, our' was more frequent in the `Reciprocation' principle. This paper constitutes a step further in understanding the use of principles of persuasion in phishing emails with future applications on how their recognition can be automated.
Idioma: Inglês
Tipo (Avaliação Docente): Científica
Nº de páginas: 13
Documentos
Não foi encontrado nenhum documento associado à publicação.
Publicações Relacionadas

Dos mesmos autores

Willingness to institutionalize a relative with dementia: a web-platform assessment with the Portuguese adapted version of the Desire-to-Institutionalize Scale (2024)
Artigo em Revista Científica Internacional
Teles, S; Napolskij, MS; Ribeiro, O; Alves, S; Freitas A; ferreira, a; Constança Paúl
User feedback and usability testing of an online training and support program for dementia carers (2021)
Artigo em Revista Científica Internacional
Teles, S; Constança Paúl; Lima, P; Chilro, R; ferreira, a
SoTRAACE for smart security in ambient assisted living (2019)
Artigo em Revista Científica Internacional
ferreira, a; Teles, S; Vieira Marques, P
Online training and support program (iSupport) for informal dementia caregivers: protocol for an intervention study in Portugal (2020)
Artigo em Revista Científica Internacional
Teles, S; ferreira, a; Seeher, K; Freel, S; Constança Paúl
Dementia caregivers training needs and preferences for online interventions: A mixed-methods study (2020)
Artigo em Revista Científica Internacional
Teles, S; Constança Paúl; Napolskij, MS; ferreira, a

Ver todas (13)

Da mesma revista

Information, uncertainty and the manipulability of artificial intelligence autonomous vehicles systems (2019)
Artigo em Revista Científica Internacional
Osorio, A; Alberto A. Pinto
Recomendar Página Voltar ao Topo
Copyright 1996-2025 © Faculdade de Direito da Universidade do Porto  I Termos e Condições  I Acessibilidade  I Índice A-Z
Página gerada em: 2025-08-23 às 00:08:14 | Política de Privacidade | Política de Proteção de Dados Pessoais | Denúncias