PulseExploreJournal ClubDebatesTrendingResearchersJournals
Instagram
HomeExploreJournal ClubTrending
Synapse
⌘+K
Synapse
December 9, 2015ACM Computing Surveys203 citations

A Taxonomy of Attacks and a Survey of Defence Mechanisms for Semantic Social Engineering Attacks

View Full Paper
RHRyan HeartfieldGLGeorge Loukas

Key Points

Key points are not available for this paper at this time.

Abstract

Social engineering is used as an umbrella term for a broad spectrum of computer exploitations that employ a variety of attack vectors and strategies to psychologically manipulate a user. Semantic attacks are the specific type of social engineering attacks that bypass technical defences by actively manipulating object characteristics, such as platform or system applications, to deceive rather than directly attack the user. Commonly observed examples include obfuscated URLs, phishing emails, drive-by downloads, spoofed websites and scareware to name a few. This article presents a taxonomy of semantic attacks, as well as a survey of applicable defences. By contrasting the threat landscape and the associated mitigation techniques in a single comparative matrix, we identify the areas where further research can be particularly beneficial.

Ask AI
Helpful
Bookmark
Share
View Full Paper

Cite This Study

Heartfield et al. (2015) studied this question.

synapsesocial.com/papers/6a0f6a114fb650da4ffe2075https://doi.org/10.1145/2835375
Ask AI
Helpful
Bookmark
Share
View Full Paper