• 文献检索
  • 文档翻译
  • 深度研究
  • 学术资讯
  • Suppr Zotero 插件Zotero 插件
  • 邀请有礼
  • 套餐&价格
  • 历史记录
应用&插件
Suppr Zotero 插件Zotero 插件浏览器插件Mac 客户端Windows 客户端微信小程序
定价
高级版会员购买积分包购买API积分包
服务
文献检索文档翻译深度研究API 文档MCP 服务
关于我们
关于 Suppr公司介绍联系我们用户协议隐私条款
关注我们

Suppr 超能文献

核心技术专利:CN118964589B侵权必究
粤ICP备2023148730 号-1Suppr @ 2026

文献检索

告别复杂PubMed语法,用中文像聊天一样搜索,搜遍4000万医学文献。AI智能推荐,让科研检索更轻松。

立即免费搜索

文件翻译

保留排版,准确专业,支持PDF/Word/PPT等文件格式,支持 12+语言互译。

免费翻译文档

深度研究

AI帮你快速写综述,25分钟生成高质量综述,智能提取关键信息,辅助科研写作。

立即免费体验

通过眼动追踪理解网络钓鱼邮件处理与感知可信度

Understanding Phishing Email Processing and Perceived Trustworthiness Through Eye Tracking.

作者信息

McAlaney John, Hills Peter J

机构信息

Faculty of Science & Technology, Department of Psychology, Bournemouth University, Poole, United Kingdom.

出版信息

Front Psychol. 2020 Jul 28;11:1756. doi: 10.3389/fpsyg.2020.01756. eCollection 2020.

DOI:10.3389/fpsyg.2020.01756
PMID:32849040
原文链接:https://pmc.ncbi.nlm.nih.gov/articles/PMC7399207/
Abstract

Social engineering attacks in the form of phishing emails represent one of the biggest risks to cybersecurity. There is a lack of research on how the common elements of phishing emails, such as the presence of misspellings and the use of urgency and threatening language, influences how the email is processed and judged by individuals. Eye tracking technology may provide insight into this. In this exploratory study a sample of 22 participants viewed a series of emails with or without indicators associated with phishing emails, whilst their eye movements were recorded using a SMI RED 500 eye-tracker. Participants were also asked to give a numerical rating of how trustworthy they deemed each email to be. Overall, it was found that participants looked more frequently at the indicators associated with phishing than would be expected by chance but spent less overall time viewing these elements than would be expected by chance. The emails that included indicators associated with phishing were rated as less trustworthy on average, with the presence of misspellings or threatening language being associated with the lowest trustworthiness ratings. In addition, it was noted that phishing indicators relating to threatening language or urgency were viewed before misspellings. However, there was no significant interaction between the trustworthiness ratings of the emails and the amount of scanning time for phishing indicators within the emails. These results suggest that there is a complex relationship between the presence of indicators associated with phishing within an email and how trustworthy that email is judged to be. This study also demonstrates that eye tracking technology is a feasible method with which to identify and record how phishing emails are processed visually by individuals, which may contribute toward the design of future mitigation approaches.

摘要

网络钓鱼电子邮件形式的社会工程攻击是网络安全面临的最大风险之一。关于网络钓鱼电子邮件的常见元素,如拼写错误的存在、紧迫性语言和威胁性语言的使用,如何影响个人对电子邮件的处理和判断,目前缺乏相关研究。眼动追踪技术可能会为这一问题提供见解。在这项探索性研究中,22名参与者观看了一系列带有或不带有与网络钓鱼电子邮件相关指标的电子邮件,同时使用SMI RED 500眼动追踪仪记录他们的眼动情况。参与者还被要求对每封电子邮件的可信度给出一个数字评分。总体而言,研究发现参与者看与网络钓鱼相关指标的频率高于偶然预期,但总体上看这些元素的时间少于偶然预期。包含与网络钓鱼相关指标的电子邮件平均被评为可信度较低,拼写错误或威胁性语言的存在与最低的可信度评分相关。此外,还注意到与威胁性语言或紧迫性相关的网络钓鱼指标比拼写错误先被查看。然而,电子邮件的可信度评分与电子邮件中网络钓鱼指标的扫描时间之间没有显著的交互作用。这些结果表明,电子邮件中与网络钓鱼相关指标的存在与该电子邮件被判断为的可信度之间存在复杂的关系。这项研究还表明,眼动追踪技术是一种可行的方法,可用于识别和记录个人如何视觉处理网络钓鱼电子邮件,这可能有助于未来缓解措施的设计。

相似文献

1
Understanding Phishing Email Processing and Perceived Trustworthiness Through Eye Tracking.通过眼动追踪理解网络钓鱼邮件处理与感知可信度
Front Psychol. 2020 Jul 28;11:1756. doi: 10.3389/fpsyg.2020.01756. eCollection 2020.
2
So Many Phish, So Little Time: Exploring Email Task Factors and Phishing Susceptibility.这么多网络钓鱼,时间太少了:探索电子邮件任务因素和网络钓鱼易感性。
Hum Factors. 2022 Dec;64(8):1379-1403. doi: 10.1177/0018720821999174. Epub 2021 Apr 9.
3
Assessment of Employee Susceptibility to Phishing Attacks at US Health Care Institutions.美国医疗机构中员工易受网络钓鱼攻击的评估。
JAMA Netw Open. 2019 Mar 1;2(3):e190393. doi: 10.1001/jamanetworkopen.2019.0393.
4
The role of cue utilization in the detection of phishing emails.线索利用在钓鱼邮件检测中的作用。
Appl Ergon. 2023 Jan;106:103887. doi: 10.1016/j.apergo.2022.103887. Epub 2022 Aug 26.
5
Susceptibility to Spear-Phishing Emails: Effects of Internet User Demographics and Email Content.对鱼叉式网络钓鱼电子邮件的易感性:互联网用户人口统计学特征和电子邮件内容的影响。
ACM Trans Comput Hum Interact. 2019 Sep;26(5). doi: 10.1145/3336141.
6
Creative Persuasion: A Study on Adversarial Behaviors and Strategies in Phishing Attacks.创造性说服:网络钓鱼攻击中的对抗行为与策略研究
Front Psychol. 2018 Feb 21;9:135. doi: 10.3389/fpsyg.2018.00135. eCollection 2018.
7
Phishing in healthcare organisations: threats, mitigation and approaches.医疗保健机构中的网络钓鱼:威胁、缓解措施及应对方法。
BMJ Health Care Inform. 2019 Sep;26(1). doi: 10.1136/bmjhci-2019-100031.
8
The Phishing Email Suspicion Test (PEST) a lab-based task for evaluating the cognitive mechanisms of phishing detection.钓鱼邮件怀疑测试(PEST)是一种基于实验室的任务,用于评估钓鱼检测的认知机制。
Behav Res Methods. 2021 Jun;53(3):1342-1352. doi: 10.3758/s13428-020-01495-0. Epub 2020 Oct 19.
9
The roles of phishing knowledge, cue utilization, and decision styles in phishing email detection.网络钓鱼知识、线索利用和决策风格在网络钓鱼电子邮件检测中的作用。
Appl Ergon. 2024 Sep;119:104309. doi: 10.1016/j.apergo.2024.104309. Epub 2024 May 9.
10
Is This Phishing? Older Age Is Associated With Greater Difficulty Discriminating Between Safe and Malicious Emails.这是钓鱼邮件吗?年龄越大,区分安全邮件和恶意邮件的难度越大。
J Gerontol B Psychol Sci Soc Sci. 2021 Oct 30;76(9):1711-1715. doi: 10.1093/geronb/gbaa228.

引用本文的文献

1
Influence of Human Factors on Cyber Security within Healthcare Organisations: A Systematic Review.人为因素对医疗机构网络安全的影响:系统综述。
Sensors (Basel). 2021 Jul 28;21(15):5119. doi: 10.3390/s21155119.
2
A Deep Learning-Based Approach to Video-Based Eye Tracking for Human Psychophysics.一种基于深度学习的用于人类心理物理学的视频眼动追踪方法。
Front Hum Neurosci. 2021 Jul 21;15:685830. doi: 10.3389/fnhum.2021.685830. eCollection 2021.

本文引用的文献

1
It's the deceiver and the receiver: Individual differences in phishing susceptibility and false positives with item profiling.是欺骗者也是受骗者:个体差异在钓鱼易感性和项目分析中的假阳性。
PLoS One. 2018 Oct 26;13(10):e0205089. doi: 10.1371/journal.pone.0205089. eCollection 2018.
2
Effects of word predictability and preview lexicality on eye movements during reading: A comparison between young and older adults.阅读过程中单词可预测性和预视词汇性对眼动的影响:年轻人与年长者的比较。
Psychol Aging. 2017 May;32(3):232-242. doi: 10.1037/pag0000160. Epub 2017 Mar 23.
3
Homo heuristicus: why biased minds make better inferences.
《智人启发式:为何有偏见的思维能做出更好的推断》
Top Cogn Sci. 2009 Jan;1(1):107-43. doi: 10.1111/j.1756-8765.2008.01006.x.
4
Bilingual lexical access in context: evidence from eye movements during reading.语境中的双语词汇通达:来自阅读过程中眼动的证据。
J Exp Psychol Learn Mem Cogn. 2009 Mar;35(2):381-90. doi: 10.1037/a0014875.
5
Eye movement control of computer functions.计算机功能的眼动控制
Int J Psychophysiol. 1998 Aug;29(3):319-25. doi: 10.1016/s0167-8760(98)00020-8.
6
Blink rate: a possible measure of fatigue.眨眼频率:一种可能的疲劳指标。
Hum Factors. 1994 Jun;36(2):285-97. doi: 10.1177/001872089403600209.