• Complex
  • Title
  • Keyword
  • Abstract
  • Scholars
  • Journal
  • ISSN
  • Conference
搜索

Author:

Zheng, Kangfeng (Zheng, Kangfeng.) | Wu, Tong (Wu, Tong.) | Wang, Xiujuan (Wang, Xiujuan.) | Wu, Bin (Wu, Bin.) | Wu, Chunhua (Wu, Chunhua.)

Indexed by:

EI Scopus SCIE

Abstract:

Social engineering has been increasingly used during the past few years. Social engineering attacks have resulted in great financial losses. Research on social engineering models and frameworks is still in its elementary stage. An appropriate social engineering framework can interpret all the attack components and their relationships clearly, which will contribute to the defense of social engineering attacks. In this tutorial paper, existing social engineering models and frameworks are summarized and a new social engineering framework is proposed involving the concept of the session and dialogue. An entire social engineering attack is defined as a social engineering session (SES). A social engineering dialogue (SED) refers to a specific attack phase, which is included in a SES. A SES contains several well-organized SEDs. Then, the attack graph is used to formalize the proposed social engineering framework. The SED is treated as an atomic attack during the whole SES. The human weaknesses that an attacker can exploit are described as vulnerabilities, the information, and trust that an attacker owns as permissions. Finally, three real-world social engineering cases are analyzed using the proposed framework and attack graph. The analyses illustrate the usability of the proposed framework and provide a better understanding of various social engineering attacks.

Keyword:

social engineering session (SES) attack graph information security social engineering dialogue (SED) Social engineering

Author Community:

  • [ 1 ] [Zheng, Kangfeng]Beijing Univ Posts & Telecommun, Sch Cyberspace Secur, Beijing 100876, Peoples R China
  • [ 2 ] [Wu, Tong]Beijing Univ Posts & Telecommun, Sch Cyberspace Secur, Beijing 100876, Peoples R China
  • [ 3 ] [Wu, Bin]Beijing Univ Posts & Telecommun, Sch Cyberspace Secur, Beijing 100876, Peoples R China
  • [ 4 ] [Wu, Chunhua]Beijing Univ Posts & Telecommun, Sch Cyberspace Secur, Beijing 100876, Peoples R China
  • [ 5 ] [Wang, Xiujuan]Beijing Univ Technol, Fac Informat Technol, Beijing 100124, Peoples R China

Reprint Author's Address:

  • [Wu, Tong]Beijing Univ Posts & Telecommun, Sch Cyberspace Secur, Beijing 100876, Peoples R China

Show more details

Related Keywords:

Related Article:

Source :

IEEE ACCESS

ISSN: 2169-3536

Year: 2019

Volume: 7

Page: 67781-67794

3 . 9 0 0

JCR@2022

JCR Journal Grade:1

Cited Count:

WoS CC Cited Count: 9

SCOPUS Cited Count: 22

ESI Highly Cited Papers on the List: 0 Unfold All

WanFang Cited Count:

Chinese Cited Count:

30 Days PV: 3

Online/Total:489/10616923
Address:BJUT Library(100 Pingleyuan,Chaoyang District,Beijing 100124, China Post Code:100124) Contact Us:010-67392185
Copyright:BJUT Library Technical Support:Beijing Aegean Software Co., Ltd.