Understanding Security Behavior of Real Users: Analysis of a Phishing Study

dc.contributor.authorKang, Mingqing
dc.contributor.authorShonman, Matthew
dc.contributor.authorSubramanya, Anshul
dc.contributor.authorZhang, Haoruo
dc.contributor.authorLi, Xiangyang
dc.contributor.authorDahbura, Anton
dc.date.accessioned2020-12-24T20:29:43Z
dc.date.available2020-12-24T20:29:43Z
dc.date.issued2021-01-05
dc.description.abstractThis paper presents a set of statistical analyses on an empirical study of phishing email sorting by real online users. Participants were assigned to multitasking and/or incentive conditions in unattended web-based tasks that are the most realistic in any comparable study to date. Our three stages of analyses included logistic regression models to identify individual phishing “cues” contributing to successful classifications, statistical significance tests assessing the links between participants’ training experience and self-assessments of success to their actual performance, significance tests searching for significant demographic factors influencing task completion performance, and lastly k-means clustering based on a range of performance measures and utilizing participants’ demographic attributes. In particular, the results indicate that multitasking and incentives create complex dynamics while demographic traits and cybersecurity training can be informative predictors of user security behavior. These findings strongly support the benefits of security training and education and advocate for customized and differentiated interventions to increase users’ success of correctly identifying phishing emails.
dc.format.extent10 pages
dc.identifier.doi10.24251/HICSS.2021.862
dc.identifier.isbn978-0-9981331-4-0
dc.identifier.urihttp://hdl.handle.net/10125/71483
dc.language.isoEnglish
dc.relation.ispartofProceedings of the 54th Hawaii International Conference on System Sciences
dc.rightsAttribution-NonCommercial-NoDerivatives 4.0 International
dc.rights.urihttps://creativecommons.org/licenses/by-nc-nd/4.0/
dc.subjectSecurity and Privacy Aspects of Human-Computer-Interactions
dc.subjectdemographic analysis
dc.subjectempirical study
dc.subjectphishing
dc.subjectsecurity
dc.subjectuser behavior
dc.titleUnderstanding Security Behavior of Real Users: Analysis of a Phishing Study
prism.startingpage7163

Files

Original bundle
Now showing 1 - 1 of 1
Loading...
Thumbnail Image
Name:
0700.pdf
Size:
1.07 MB
Format:
Adobe Portable Document Format