Abstract

Background/Objectives: Most of cyber-attacks start with a phishing emails by deceiving users into acquiring sensitive information. As long human are using the system, there will be a weak part that could be exploited. Many literatures indicates that the main reason of people had been the victim of phishing is a lack of awareness. Several approaches have been used to improve awareness of users; however, the realistic situations in some studies were not applied. Furthermore, environment and organization should be considered when design training methods. Methods/Statistical Analysis: The present study was conducted over three years using formative and summative assessments to evaluate students’ awareness. This study investigated the most common ways in the classroom of educating students about email phishing email. Findings: This study presents the results of email phishing attacks and quizzes conducted to demonstrate how the education can be a powerful tool to increase awareness and protect students from email phishing. This paper also highlights the significance of educational through the classes to increase awareness of email phishing and other security threats. Improvements/ Applications: The work could be extended in the future to use more ways of teaching students against phishing attacks. Keywords: Phishing Email, Formative and Summative Assessments, Cyber Attacks Student Vulnerabilities

Highlights

  • Email has become a part of daily routines and main method for formal communication for many people and organizations

  • To ensure the effectiveness of the Computer Security 429CSS-3 course in increasing the awareness of phishing emails; it would be interesting to compare results of students enrolled in Computer Security 429CSS-3 course with the students who are not enrolled in the course

  • Many methods are improving to increase the awareness of Phishing Email

Read more

Summary

Introduction

Email has become a part of daily routines and main method for formal communication for many people and organizations. The interest in the education field has been much higher than other sectors[1,2]. Communicating between instructor and students via email is common. For example: call for meeting, collecting data, filling web-survey, submitting marks, or providing guidance for advisees are taking place through email. Most instructors and faculty staff receive their employment offer letter and job agreement through email. Students receive emails from advisors, instructors, and administrators to assist them with difficulties or career planning process. Despite the convenience associated for both instructors and students that email still plays main role in their communication, email consider as a primary channel of phishing

Methods
Results
Conclusion
Full Text
Published version (Free)

Talk to us

Join us for a 30 min session where you can share your feedback and ask us any queries you have

Schedule a call