Catch Me if You Can : "Delaying" as a Social Engineering Technique in the Post-Attack Phase.

Proceedings of the ACM on Human-Computer Interaction(2023)

引用 0|浏览3
暂无评分
摘要
Much is known about social engineering strategies (SE) during the attack phase, but little is known about the post-attack period. To address this gap, we conducted 17 narrative interviews with victims of cyber fraud. We found that while it was seen to be important for victims to act immediately and to take countermeasures against attack, they often did not do so. In this paper, we describe this "delay" in victims' responses as entailing a period of doubt and trust in good faith. The delay in victim response is a direct consequence of various SE techniques, such as exploiting prosocial behavior with subsequent negative effects on emotional state and interpersonal relationships. Our findings contribute to shaping digital resistance by helping people identify and overcome delay techniques to combat their inaction and paralysis.
更多
查看译文
关键词
comping strategies,cybercrime,digital resilience,post-attack,social computing,social engineering,usable security,user behavior,victim's vulnerabilities
AI 理解论文
溯源树
样例
生成溯源树,研究论文发展脉络
Chat Paper
正在生成论文摘要