Al-Qahtani Ali F, Cresci Stefano
College of Science and Engineering Hamad Bin Khalifa University (HBKU) Doha Qatar.
Institute of Informatics and Telematics (IIT) National Research Council (CNR) Pisa Italy.
IET Inf Secur. 2022 Sep;16(5):324-345. doi: 10.1049/ise2.12073. Epub 2022 Jul 4.
The COVID-19 pandemic coincided with an equally-threatening scamdemic: a global epidemic of scams and frauds. The unprecedented cybersecurity concerns emerged during the pandemic sparked a torrent of research to investigate cyber-attacks and to propose solutions and countermeasures. Within the scamdemic, phishing was by far the most frequent type of attack. This survey paper reviews, summarises, compares and critically discusses 54 scientific studies and many reports by governmental bodies, security firms and the grey literature that investigated phishing attacks during COVID-19, or that proposed countermeasures against them. Our analysis identifies the main characteristics of the attacks and the main scientific trends for defending against them, thus highlighting current scientific challenges and promising avenues for future research and experimentation.
一场全球范围内的诈骗和欺诈泛滥。疫情期间出现的前所未有的网络安全问题引发了大量研究,以调查网络攻击并提出解决方案和对策。在这场诈骗大流行中,网络钓鱼是迄今为止最常见得攻击类型。这篇综述论文回顾、总结、比较并批判性地讨论了54项科学研究以及政府机构、安全公司的许多报告和灰色文献,这些研究调查了新冠疫情期间的网络钓鱼攻击,或提出了针对这些攻击的对策。我们的分析确定了攻击的主要特征以及防范攻击的主要科学趋势,从而突出了当前的科学挑战以及未来研究和实验中充满希望的途径。