首页> 外文会议>Singapore Cyber-Security Conference >Telephone-based social engineering attacks: An experiment testing the success and time decay of an intervention
【24h】

Telephone-based social engineering attacks: An experiment testing the success and time decay of an intervention

机译:基于电话的社会工程攻击:一个实验测试干预的成功和时间衰减

获取原文

摘要

The objective of this study is to evaluate the effectiveness of an information campaign to counter a social engineering attack via the telephone. Four different offenders phoned 48 employees and made them believe that their PC was distributing spam emails. Targets were told that this situation could be solved by downloading and executing software from a website (i.e. an untrusted one). A total of 46.15 % of employees not exposed to the intervention followed the instructions of the offender. This was significantly different to those exposed to an intervention 1 week prior to the attack (9.1 %); however there was no effect for those exposed to an intervention 2 weeks prior to the attack (54.6 %). This research suggests that scam awareness-raising campaigns reduce vulnerability only in the short term.
机译:本研究的目的是评估信息运动的有效性来通过电话抵抗社会工程攻击。四个不同的罪犯打电话给48名员工,并让他们认为他们的PC正在分发垃圾邮件。据说目标是通过从网站下载和执行软件来解决这种情况(即不受信任的情况)来解决。共有46.15%的员工未接触干预措施遵循罪犯的指示。这与暴露于攻击前1周暴露于干预的人有显着差异(9.1%);然而,在攻击前2周暴露于干预的人没有影响(54.6%)。这项研究表明,诈骗提高认识活动仅在短期内减少漏洞。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号