The Benefit of Warning to Improve Detecting Social Engineering Attack Messages

,Ibrahim Mohammed Alseadoon
DOI: https://doi.org/10.18178/ijfcc.2024.13.3.617
2023-01-01
International Journal of Future Computer and Communication
Abstract:Social engineering attack messages are a constant threat to online services. Numerous scholars have attempted to solve this problem by understanding the interaction between users and social engineering attack messages. Users’ behavior and traits are crucial in making them immune to attacks. Specifically, studies have indicated that the mental process of detection has a tremendous effect on preventing users from becoming victims of attacks. Studies have also suggested that users need to think in a certain way to detect deception. Our study aims to determine the impact of warnings on users’ types of thinking to increase secure behavior. A mixed-method approach is applied (i.e. experiment and open-ended questions) to answer research questions. The results indicate that warnings impact users’ types of thinking and have a significant impact on increasing their protection against attacks. In addition, warnings have the benefit of confirming users’ initial judgment of known (familiar) social engineering attack messages without the need to perform deep thinking to identify deception. Additionally, users employ several methods to validate messages. Warning has an effect on these methods.
What problem does this paper attempt to address?