Educational Phishing: An Awareness Campaign to Learn How to Detect Phishing

Greco, Matias; Chang, Rodrigo; Galdames, Patricio; IEEE

Abstract

One of the most frequent attacks on the Internet is phishing, in which an attacker impersonates the identity of a trusted person or institution. Because students spend a large part of their university life connected and interacting on the Internet, for social, educational, or personal reasons, it is essential that students acquire the skills to detect these threats. In this article, we show the educational phishing experience at the Faculty of Engineering, Architecture, and Design of the Universidad San Sebastian, in which 1,970 students from three different regions of Chile were sent a communication impersonating the university and asked to update their personal information. The results showed that 18% of the students did not detect phishing. The idea was taken from companies where information security is critical. To our knowledge, this is the first experience applied in a Latin-American university and can be replicated at many levels of education.

Más información

Título según WOS: ID WOS:001458245200047 Not found in local WOS DB
Título de la Revista: 2024 43RD INTERNATIONAL CONFERENCE OF THE CHILEAN COMPUTER SCIENCE SOCIETY, SCCC
Editorial: IEEE
Fecha de publicación: 2024
DOI:

10.1109/SCCC63879.2024.10767670

Notas: ISI