Social Engineering Attacks: A Survey

被引:163
|
作者
Salahdine, Fatima [1 ]
Kaabouch, Naima [1 ]
机构
[1] Univ North Dakota, Sch Elect Engn & Comp Sci, Grand Forks, ND 58202 USA
关键词
social engineering attacks; cyber security; phishing; vishing; spear phishing; scams; baiting; robocalls; SECURITY;
D O I
10.3390/fi11040089
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The advancements in digital communication technology have made communication between humans more accessible and instant. However, personal and sensitive information may be available online through social networks and online services that lack the security measures to protect this information. Communication systems are vulnerable and can easily be penetrated by malicious users through social engineering attacks. These attacks aim at tricking individuals or enterprises into accomplishing actions that benefit attackers or providing them with sensitive data such as social security number, health records, and passwords. Social engineering is one of the biggest challenges facing network security because it exploits the natural human tendency to trust. This paper provides an in-depth survey about the social engineering attacks, their classifications, detection strategies, and prevention procedures.
引用
收藏
页数:17
相关论文
共 50 条
  • [21] Dissecting Social Engineering Attacks Through the Lenses of Cognition
    Burda, Pavlo
    Allodi, Luca
    Zannone, Nicola
    2021 IEEE EUROPEAN SYMPOSIUM ON SECURITY AND PRIVACY WORKSHOPS (EUROS&PW 2021), 2021, : 149 - 160
  • [22] A Mathematical Model for Risk Assessment of Social Engineering Attacks
    Sandor, Andrei
    Tont, Gabriela
    Simion, Eduard
    TEM JOURNAL-TECHNOLOGY EDUCATION MANAGEMENT INFORMATICS, 2022, 11 (01): : 334 - 338
  • [23] Priming and warnings are not effective to prevent social engineering attacks
    Junger, M.
    Montoya, L.
    Overink, F. -J.
    COMPUTERS IN HUMAN BEHAVIOR, 2017, 66 : 75 - 87
  • [24] PERSUADED: Fighting Social Engineering Attacks with a Serious Game
    Aladawy, Dina
    Beckers, Kristian
    Pape, Sebastian
    TRUST, PRIVACY AND SECURITY IN DIGITAL BUSINESS, 2018, 11033 : 103 - 118
  • [25] A Comprehensive Analysis of Social Engineering Attacks: From Phishing to Prevention - Tools, Techniques and Strategies
    Gupta, Sarthak
    Pritwani, Mayank
    Shrivastava, Adarsh
    Mohana
    Moharir, Minal
    Kumar, Ashok A. R.
    2024 SECOND INTERNATIONAL CONFERENCE ON INTELLIGENT CYBER PHYSICAL SYSTEMS AND INTERNET OF THINGS, ICOICI 2024, 2024, : 42 - 49
  • [26] An Experiment to Create Awareness in People concerning Social Engineering Attacks
    Eduardo, Benavides-Astudillo
    Walter, Fuertes-Diaz
    Sandra, Sanchez-Gordon
    CIENCIA UNEMI, 2020, 13 (32): : 27 - 40
  • [27] Social Engineering Attacks During the COVID-19 Pandemic
    Venkatesha S.
    Reddy K.R.
    Chandavarkar B.R.
    SN Computer Science, 2021, 2 (2)
  • [28] Comparative Study of Various Social Network Attacks: Comprehensive Survey
    Khalid, Zainab
    Malik, Muhammad Sheraz Arshad
    Usman, Muhammad
    Abid, Mahwish
    Shoukat, Ijaz Ali
    INTERNATIONAL JOURNAL OF COMPUTER SCIENCE AND NETWORK SECURITY, 2018, 18 (12): : 170 - 180
  • [29] MAZEPHISHING: THE COVID-19 PANDEMIC AS CREDIBLE SOCIAL CONTEXT FOR SOCIAL ENGINEERING ATTACKS
    Kikerpill, Kristjan
    Siibak, Andra
    TRAMES-JOURNAL OF THE HUMANITIES AND SOCIAL SCIENCES, 2021, 25 (04): : 371 - 393
  • [30] Targeting the Weakest Link: Social Engineering Attacks in Ethereum Smart Contracts
    Ivanov, Nikolay
    Lou, Jianzhi
    Chen, Ting
    Li, Jin
    Yan, Qiben
    ASIA CCS'21: PROCEEDINGS OF THE 2021 ACM ASIA CONFERENCE ON COMPUTER AND COMMUNICATIONS SECURITY, 2021, : 787 - 801