Paper published in a book (Scientific congresses, symposiums and conference proceedings)
Principles of Persuasion in Social Engineering and Their Use in Phishing
Ferreira, Ana; Lenzini, Gabriele; Conventry, Lynne
2015In T. Tryfonas, I. Askoxylakis (Ed.) Human Aspects of Information Security, Privacy, and Trust Third International Conference, HAS 2015
Peer reviewed
 

Files


Full Text
FerreiraAna-CameraReady.pdf
Author preprint (1.07 MB)
Download

All documents in ORBilu are protected by a user license.

Send to



Details



Keywords :
social engineering; principles of persuasion; phishing
Abstract :
[en] Research on marketing and deception has identified principles of persuasion that in influence human decisions. However, this research is scattered: it focuses on specific contexts and produces different taxonomies. In regard to frauds and scams, three taxonomies are often referred in the literature: Cialdini's principles of influence, Gragg's psychological triggers, and Stajano et al. principles of scams. It is unclear whether these relate but clearly some of their principles seem overlapping whereas others look complementary. We propose a way to connect those principles and present a merged and reviewed list for them. Then, we analyse various phishing emails and show that our principles are used therein in specific combinations. Our analysis of phishing is based on peer review and further research is needed to make it automatic, but the approach we follow, together with principles we propose, can be applied more consistently and more comprehensively than the original taxonomies.
Research center :
SnT
Disciplines :
Engineering, computing & technology: Multidisciplinary, general & others
Author, co-author :
Ferreira, Ana ;  University of Luxembourg > Interdisciplinary Centre for Security, Reliability and Trust (SNT)
Lenzini, Gabriele ;  University of Luxembourg > Interdisciplinary Centre for Security, Reliability and Trust (SNT)
Conventry, Lynne
External co-authors :
yes
Language :
English
Title :
Principles of Persuasion in Social Engineering and Their Use in Phishing
Publication date :
2015
Event name :
Human Aspects of Information Security, Privacy, and Trust
Event organizer :
Human Computer Interaction International
Event place :
Los Angeles, United States
Event date :
from 02-08-2015 to 07-08-2015
Audience :
International
Main work title :
Human Aspects of Information Security, Privacy, and Trust Third International Conference, HAS 2015
Editor :
T. Tryfonas, I. Askoxylakis
Publisher :
Springer, Switzerland
ISBN/EAN :
978-3-319-20375-1
Collection name :
Lecture Notes in Computer Science, 9190
Pages :
36-47
Peer reviewed :
Peer reviewed
FnR Project :
FNR1183245 - Socio-technical Analysis Of Security And Trust, 2011 (01/05/2012-30/04/2015) - Peter Y. A. Ryan
Name of the research project :
R-AGR-0417-1 > C11/IS/1183245 : STAST > 01/05/2012 - 30/04/2015 > RYAN Peter
Funders :
FNR - Fonds National de la Recherche [LU]
Available on ORBilu :
since 09 March 2015

Statistics


Number of views
610 (24 by Unilu)
Number of downloads
3283 (29 by Unilu)

Scopus citations®
 
64
Scopus citations®
without self-citations
61
OpenCitations
 
37

Bibliography


Similar publications



Contact ORBilu