Přehled o publikaci
2024
Vulnerability of Students of Masaryk University to Two Different Types of Phishing
DUBOVECKÁ, KláraBasic information
Original name
Vulnerability of Students of Masaryk University to Two Different Types of Phishing
Authors
DUBOVECKÁ, Klára
Edition
Internet Governance, Warsaw, NASK – National Research Institute, 2024, 2956-3119
Other information
Language
English
Type of outcome
Article in a journal
Country of publisher
Poland
Confidentiality degree
is not subject to a state or trade secret
References:
Marked to be transferred to RIV
Yes
RIV identification code
RIV/00216224:14230/24:00138044
Organization
Fakulta sociálních studií – Repository – Repository
EID Scopus
Keywords in English
phishing; university students; social engineering; the human factor; unintentional threat
Changed: 31/7/2025 00:50, RNDr. Daniel Jakubík
Abstract
In the original language
According to the European Union Agency for Cybersecurity’s (ENISA) Threat Landscape (ETL) report 2020, phishing is the most commonly used type of cyberattack. Phishing is the technique of delivering false communications that appear to be from a real and respectable source, typically via e-mail or text message. The attacker aims to steal money, obtain access to sensitive data, and login information, or install malware on the victim’s device. Data from the same report shows that during the COVID-19 pandemic, phishing attacks increased by 667% in one month. Simultaneously, warnings about expected waves of phishing e-mails at Masaryk University in Czechia were encountered more often. However, at the time this article was written, there was de facto no anti-phishing research dealing with the problem of phishing attacks on Czech universities. The present article focuses on unintentional human error on the side of students of Masaryk University. The main aim of this article is to uncover the profile of the user who is most prone to victimisation of phishing in the university setting. These results were achieved by performing two real-life phishing simulations. Data suggests that female students are more prone to crash for targeted e-mails. At the same time, all students are more susceptible to spear-phishing attacks than to the generic ones. Findings are explained by analysing the empirical results of the two real-life phishing attacks conducted.