English
Related papers

Related papers: Comprehensive List of User Deception Techniques in…

200 papers

We show practical attacks against OpenPGP and S/MIME encryption and digital signatures in the context of email. Instead of targeting the underlying cryptographic primitives, our attacks abuse legitimate features of the MIME standard and…

Cryptography and Security · Computer Science 2019-04-18 Jens Müller , Marcus Brinkmann , Damian Poddebniak , Sebastian Schinzel , Jörg Schwenk

Advanced machine learning and natural language techniques enable attackers to launch sophisticated and targeted social engineering-based attacks. To counter the active attacker issue, researchers have since resorted to proactive methods of…

Computation and Language · Computer Science 2020-07-16 Avisha Das , Rakesh M. Verma

The critical role played by email has led to a range of extension protocols (e.g., SPF, DKIM, DMARC) designed to protect against the spoofing of email sender domains. These protocols are complex as is, but are further complicated by…

Cryptography and Security · Computer Science 2023-04-21 Enze Liu , Gautam Akiwate , Mattijs Jonker , Ariana Mirian , Grant Ho , Geoffrey M. Voelker , Stefan Savage

With the ever growing networking capabilities and services offered to users, attack surfaces have been increasing exponentially, additionally, the intricacy of network architectures has increased the complexity of cyber-defenses, to this…

Cryptography and Security · Computer Science 2019-03-22 Xavier Bellekens , Gayan Jayasekara , Hanan Hindy , Miroslav Bures , David Brosset , Christos Tachtatzis , Robert Atkinson

Phishing attacks are one of the most common social engineering attacks targeting users emails to fraudulently steal confidential and sensitive information. They can be used as a part of more massive attacks launched to gain a foothold in…

Cryptography and Security · Computer Science 2022-01-27 Fatima Salahdine , Zakaria El Mrabet , Naima Kaabouch

While email is the most ubiquitous and interoperable form of online communication today, it was not conceived with strong security guarantees, and the ensuing security enhancements are, by contrast, lacking in both ubiquity and…

Cryptography and Security · Computer Science 2021-10-26 Jeremy Clark , P. C. van Oorschot , Scott Ruoti , Kent Seamons , Daniel Zappala

Modern organizations are persistently targeted by phishing emails. Despite advances in detection systems and widespread employee training, attackers continue to innovate, posing ongoing threats. Two emerging vectors stand out in the current…

Cryptography and Security · Computer Science 2025-05-20 Marie Weinz , Nicola Zannone , Luca Allodi , Giovanni Apruzzese

Secure communications are playing increasing roles in society, particularly in finance, journalism, and military projects. Current methods of securing e-mail and similar messaging methods rely on encryption of the message body, but the…

Cryptography and Security · Computer Science 2014-11-25 H. Bjorgvinsdottir , P. M. Bentley

Phishing emails are the first step for many of today's attacks. They come with a simple hyperlink, request for action or a full replica of an existing service or website. The goal is generally to trick the user to voluntarily give away his…

Cryptography and Security · Computer Science 2020-04-22 Suhail Paliath , Mohammad Abu Qbeitah , Monther Aldwairi

Social Engineering is the act of manipulating individuals to perform actions or reveal information. Social engineering tactics are widely recognized as a significant risk to information security. The increasing digital environment has…

Social and Information Networks · Computer Science 2024-08-06 Devendra Chapagain , Naresh Kshetri , Bindu Aryal , Bhawani Dhakal

Cyber attacks such as phishing, IRS scams, etc., still are successful in fooling Internet users. Users are the last line of defense against these attacks since attackers seem to always find a way to bypass security systems. Understanding…

Cryptography and Security · Computer Science 2020-06-25 Shahryar Baki , Rakesh M. Verma , Arjun Mukherjee , Omprakash Gnawali

Fooling adversaries with traps such as honeytokens can slow down cyber attacks and create strong indicators of compromise. Unfortunately, cyber deception techniques are often poorly specified. Also, realistically measuring their…

Cryptography and Security · Computer Science 2024-08-21 Mario Kahlhofer , Stefan Achleitner , Stefan Rass , René Mayrhofer

Anomalies in emails such as phishing and spam present major security risks such as the loss of privacy, money, and brand reputation to both individuals and organizations. Previous studies on email anomaly detection relied on a single type…

Cryptography and Security · Computer Science 2022-03-22 Craig Beaman , Haruna Isah

In an era dominated by digital interactions, phishing campaigns have evolved to exploit not just technological vulnerabilities but also human traits. This study takes an unprecedented deep dive into large-scale phishing campaigns aimed at…

Cryptography and Security · Computer Science 2023-10-06 Anargyros Chrysanthou , Yorgos Pantis , Constantinos Patsakis

Spam messes up users inbox, consumes resources and spread attacks like DDoS, MiM, Phishing etc., Phishing is a byproduct of email and causes financial loss to users and loss of reputation to financial institutions. In this paper we study…

Cryptography and Security · Computer Science 2016-11-15 Cynthia Dhinakaran , Jae Kwang lee , Dhinaharan Nagamalai

Cybersecurity incidents such as data breaches have become increasingly common, affecting millions of users and organizations worldwide. The complexity of cybersecurity threats challenges the effectiveness of existing security communication…

Cryptography and Security · Computer Science 2025-04-04 Carolina Carreira , Alexandra Mendes , João F. Ferreira , Nicolas Christin

Recent years have brought about an interest in the challenging task of summarizing conversation threads (meetings, online discussions, etc.). Such summaries help analysis of the long text to quickly catch up with the decisions made and thus…

Computation and Language · Computer Science 2021-08-02 Shiyue Zhang , Asli Celikyilmaz , Jianfeng Gao , Mohit Bansal

Most research into anti-phishing defence assumes that the mal-actor is attempting to harvest end-users' personally identifiable information or login credentials and, hence, focuses on detecting phishing websites. The defences for this type…

Cryptography and Security · Computer Science 2022-04-28 Trevor Wood , Vitor Basto-Fernandes , Eerke Boiten , Iryna Yevseyeva

The well-established deceptive design literature has focused on conventional user interfaces. With the rise of extended reality (XR), understanding deceptive design's unique manifestations in this immersive domain is crucial. However,…

Human-Computer Interaction · Computer Science 2025-04-01 Hilda Hadan , Lydia Choong , Leah Zhang-Kennedy , Lennart E. Nacke

This paper argues that a range of current AI systems have learned how to deceive humans. We define deception as the systematic inducement of false beliefs in the pursuit of some outcome other than the truth. We first survey empirical…

Computers and Society · Computer Science 2023-08-29 Peter S. Park , Simon Goldstein , Aidan O'Gara , Michael Chen , Dan Hendrycks