Model of Social Influence in Analysis of Socio-engineering Attacks

The purpose of this study is to study the modernization of the model of an attacker’s social engineering attack on a user, taking into account a wider range of factors influencing the success of a social engineering attack associated with the principles of social influence. Methods. To achieve this...

Descripción completa

Guardado en:
Detalles Bibliográficos
Autores principales: T. V. Tulupieva, M. V. Abramov, A. L. Tulupiev
Formato: article
Lenguaje:EN
RU
Publicado: North-West institute of management of the Russian Presidential Academy of National Economy and Public Administration 2021
Materias:
Acceso en línea:https://doaj.org/article/11a8c7e2bd9e40a6894b10ac8b009100
Etiquetas: Agregar Etiqueta
Sin Etiquetas, Sea el primero en etiquetar este registro!
Descripción
Sumario:The purpose of this study is to study the modernization of the model of an attacker’s social engineering attack on a user, taking into account a wider range of factors influencing the success of a social engineering attack associated with the principles of social influence. Methods. To achieve this goal, the approaches to social influence and the components of social influence were analyzed. An integrated circuit of social influence is built, grounding in the context of socio-engineering attacks. Results. A model of social influence is proposed, built in the context of an attacker’s social engineering attack on a user. A new interpretation of the term user vulnerability in the context of information security has been proposed. Conclusion. The result obtained forms the potential of filling the user and attacker models with specific vulnerabilities and competencies, which will lead to a more accurate assessment of the success of the attacker’s social engineering attack on the user, due to the aggregation of information from incidents that have occurred.