Please use this identifier to cite or link to this item:
Combating Phishing Attacks: A Knowledge Management Approach
|Title:||Combating Phishing Attacks: A Knowledge Management Approach|
|Issue Date:||04 Jan 2017|
|Abstract:||This paper explores how an organization can utilize its employees to combat phishing attacks collectively through coordinating their activities to create a human firewall. We utilize knowledge management research on knowledge sharing to guide the design of an experiment that explores a central reporting and dissemination platform for phishing attacks. The 2x2 experiment tests the effects of public attribution (to the first person reporting a phishing message) and validation (by the security team) of phishing messages on reporting motivation and accuracy. Results demonstrate that knowledge management techniques are transferable to organizational security and that knowledge management can benefit from insights gained from combating phishing. Specifically, we highlight the need to both publicly acknowledge the contribution to a knowledge management system and provide validation of the contribution. As we saw in our experiment, doing only one or the other does not improve outcomes for correct phishing reports (hits).|
|Rights:||Attribution-NonCommercial-NoDerivatives 4.0 International|
|Appears in Collections:||Confidentiality, Integrity, and Availability of Knowledge and Data Minitrack|
Items in ScholarSpace are protected by copyright, with all rights reserved, unless otherwise indicated.