Social Engineering as the Art of Deception in Cyber-Attacks: A Mapping Review

Javier Guaña-Moya, Diego Ávila-Pesantez

Producción científica: Capítulo del libro/informe/acta de congresoContribución de conferenciarevisión exhaustiva

Resumen

Social engineering is the art of getting users to compromise information systems, presenting itself as a novel deception strategy. Social engineers target individuals with access to information to manipulate them into disclosing sensitive data or even carrying out malicious attacks through influence and persuasion. These types of attacks have become the most significant cybersecurity threats. This bibliographic review aims to analyze social engineering due to its impact on the productivity and efficiency of organizations, using deception and knowledge of human vulnerabilities to establish gaps in information security and gain access to secure data. We conclude that social engineering acts based on human exposure through attacks in four clearly defined phases. These attacks can be classified, first, considering the target as humans and computers, and finally, according to how the attack is made, as social, technical, and physical.

Idioma originalInglés
Título de la publicación alojadaInformation Systems and Technologies - WorldCIST 2023
EditoresAlvaro Rocha, Hojjat Adeli, Gintautas Dzemyda, Fernando Moreira, Valentina Colla
EditorialSpringer Science and Business Media Deutschland GmbH
Páginas155-163
Número de páginas9
ISBN (versión impresa)9783031456411
DOI
EstadoPublicada - 2024
Evento11th World Conference on Information Systems and Technologies, WorldCIST 2023 - Pisa, Italia
Duración: 4 abr. 20236 abr. 2023

Serie de la publicación

NombreLecture Notes in Networks and Systems
Volumen799 LNNS
ISSN (versión impresa)2367-3370
ISSN (versión digital)2367-3389

Conferencia

Conferencia11th World Conference on Information Systems and Technologies, WorldCIST 2023
País/TerritorioItalia
CiudadPisa
Período4/04/236/04/23

Nota bibliográfica

Publisher Copyright:
© The Author(s), under exclusive license to Springer Nature Switzerland AG 2024.

Huella

Profundice en los temas de investigación de 'Social Engineering as the Art of Deception in Cyber-Attacks: A Mapping Review'. En conjunto forman una huella única.

Citar esto