Social Engineering Attacks: A Survey

被引:163
|
作者
Salahdine, Fatima [1 ]
Kaabouch, Naima [1 ]
机构
[1] Univ North Dakota, Sch Elect Engn & Comp Sci, Grand Forks, ND 58202 USA
关键词
social engineering attacks; cyber security; phishing; vishing; spear phishing; scams; baiting; robocalls; SECURITY;
D O I
10.3390/fi11040089
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The advancements in digital communication technology have made communication between humans more accessible and instant. However, personal and sensitive information may be available online through social networks and online services that lack the security measures to protect this information. Communication systems are vulnerable and can easily be penetrated by malicious users through social engineering attacks. These attacks aim at tricking individuals or enterprises into accomplishing actions that benefit attackers or providing them with sensitive data such as social security number, health records, and passwords. Social engineering is one of the biggest challenges facing network security because it exploits the natural human tendency to trust. This paper provides an in-depth survey about the social engineering attacks, their classifications, detection strategies, and prevention procedures.
引用
收藏
页数:17
相关论文
共 50 条
  • [1] A Taxonomy of Attacks and a Survey of Defence Mechanisms for Semantic Social Engineering Attacks
    Heartfield, Ryan
    Loukas, George
    ACM COMPUTING SURVEYS, 2015, 48 (03)
  • [2] Internet-Based Social Engineering Psychology, Attacks, and Defenses: A Survey
    Longtchi, Theodore Tangie
    Rodriguez, Rosana Montanez
    Al-Shawaf, Laith
    Atyabi, Adham
    Xu, Shouhuai
    PROCEEDINGS OF THE IEEE, 2024, 112 (03) : 210 - 246
  • [3] Coronavirus Social Engineering Attacks: Issues and Recommendations
    Alzahrani, Ahmed
    INTERNATIONAL JOURNAL OF ADVANCED COMPUTER SCIENCE AND APPLICATIONS, 2020, 11 (05) : 154 - 161
  • [4] A Comprehensive Survey of Social Engineering Attacks: Taxonomy of Attacks, Prevention, and Mitigation Strategies
    Birthriya, Santosh Kumar
    Ahlawat, Priyanka
    Jain, Ankit Kumar
    JOURNAL OF APPLIED SECURITY RESEARCH, 2024,
  • [5] A comprehensive survey on social engineering attacks, countermeasures, case study, and research challenges
    Rathod, Tejal
    Jadav, Nilesh Kumar
    Tanwar, Sudeep
    Alabdulatif, Abdulatif
    Garg, Deepak
    Singh, Anupam
    INFORMATION PROCESSING & MANAGEMENT, 2025, 62 (01)
  • [6] Taxonomy of Social Engineering Attacks: A Survey of Trends and Future Directions
    Maraj, Arianit
    Butler, William
    PROCEEDINGS OF THE 17TH INTERNATIONAL CONFERENCE ON CYBER WARFARE AND SECURITY (ICCWS 2022), 2022, : 185 - 193
  • [7] A Comprehensive Taxonomy of Social Engineering Attacks and Defense Mechanisms: Toward Effective Mitigation Strategies
    Zaoui, Mohamed
    Yousra, Belfaik
    Yassine, Sadqi
    Yassine, Maleh
    Karim, Ouazzane
    IEEE ACCESS, 2024, 12 : 72224 - 72241
  • [8] Social Engineering Attacks: Recent Advances and Challenges
    Mashtalyar, Nikol
    Ntaganzwa, Uwera Nina
    Santos, Thales
    Hakak, Saqib
    Ray, Suprio
    HCI FOR CYBERSECURITY, PRIVACY AND TRUST (HCI-CPT 2021), 2021, 12788 : 417 - 431
  • [9] Social Engineering and Organisational Dependencies in Phishing Attacks
    Taib, Ronnie
    Yu, Kun
    Berkovsky, Shlomo
    Wiggins, Mark
    Bayl-Smith, Piers
    HUMAN-COMPUTER INTERACTION - INTERACT 2019, PT I, 2019, 11746 : 564 - 584
  • [10] Advanced social engineering attacks
    Krombholz, Katharina
    Hobel, Heidelinde
    Huber, Markus
    Weippl, Edgar
    JOURNAL OF INFORMATION SECURITY AND APPLICATIONS, 2015, 22 (113-122) : 113 - 122