Phishing attacks continue to pose a significant threat to online security, targeting individuals across various domains. This paper presents an investigation into the eye movements differences exhibited by individuals with varying levels of computer science experience when confronted with phishing attempts. Leveraging advanced eye-tracking tools, our study scrutinized the gaze patterns and response strategies of computer science experts and novices when exposed to simulated phishing email scenarios. Our findings reveal striking disparities in the visual and cognitive processing of phishing content between the two groups. Computer science experts displayed a heightened vigilance, exhibiting more efficient scanning of suspicious elements and quicker recognition of phishing indicators. Conversely, novices exhibited longer fixation times on deceptive elements and were prone to falling for fraudulent schemes. The insights gained from our research hold valuable implications for the development of targeted cybersecurity education and the design of more effective anti-phishing tools and email clients.

A Gaze-Based Analysis of Human Detection of Email Phishing

Zinno, Stefania
;
Ventre, Giorgio;Mancuso, Laura;Presta, Roberta
2024-01-01

Abstract

Phishing attacks continue to pose a significant threat to online security, targeting individuals across various domains. This paper presents an investigation into the eye movements differences exhibited by individuals with varying levels of computer science experience when confronted with phishing attempts. Leveraging advanced eye-tracking tools, our study scrutinized the gaze patterns and response strategies of computer science experts and novices when exposed to simulated phishing email scenarios. Our findings reveal striking disparities in the visual and cognitive processing of phishing content between the two groups. Computer science experts displayed a heightened vigilance, exhibiting more efficient scanning of suspicious elements and quicker recognition of phishing indicators. Conversely, novices exhibited longer fixation times on deceptive elements and were prone to falling for fraudulent schemes. The insights gained from our research hold valuable implications for the development of targeted cybersecurity education and the design of more effective anti-phishing tools and email clients.
2024
979-8-3503-8314-0
Computer science, Visualization, Phishing, Education, Gaze tracking, Electronic mail, Phishing, Eye-tracking, Interfaces, Training
File in questo prodotto:
Non ci sono file associati a questo prodotto.

I documenti in IRIS sono protetti da copyright e tutti i diritti sono riservati, salvo diversa indicazione.

Utilizza questo identificativo per citare o creare un link a questo documento: https://hdl.handle.net/20.500.12570/43433
 Attenzione

Attenzione! I dati visualizzati non sono stati sottoposti a validazione da parte dell'ateneo

Citazioni
  • ???jsp.display-item.citation.pmc??? ND
social impact