Critical.
Authoritative.
Strategic.
Subscribe to CIO Magazine »

Phishers target the popular

People who make a lot of online transactions, are popular online and who respond to most of the emails they receive are at the highest risk for being duped by malicious phishers, according to a multi-university study.

That's because they don't focus properly and so make decisions about what to do with emails based on simple cues embedded within rather than analyzing their entire contents, say researchers at the University of Buffalo, Brock University, Ball State University and the University of Texas, Arlington.

People are most susceptible if they read so many emails that they don't have the time to accurately weigh whether they are spam, the researchers say. Contributing to this problem are receiving a lot of emails, responding a lot of emails, maintaining many online relationships and conducting lots of online transactions.

Authors of spam have tapped into the psyche of the email recipient to exploit basic human weaknesses, the researchers say. Statements indicating urgency -- disaster relief, security of bank accounts, free tickets -- distract recipients and make them more likely to miss indicators that the email isn't legitimate, they say.

There are steps email users can take. The researchers offer tips on reducing the likelihood of being duped, starting with spam blockers. "By way of prevention, we found that spam blockers are imperative to reduce the number of unnecessary emails individuals receive that could potentially clutter their information processing and judgment," says Professor Arun Vishwanath, of the UB Department of Communication.

They suggest using many email accounts, each dedicated to a single purpose -- banking, personal correspondence, etc. -- so off-topic spam seems out of place. For instance, if banking spam shows up in the personal account, it will stand out, the researchers say, making the recipient consider it more carefully.

The researchers say setting aside a regular time for handling different email accounts also helps recipient focus and be less susceptible to phishing.

Join the CIO Australia group on LinkedIn. The group is open to CIOs, IT Directors, COOs, CTOs and senior IT managers.

More about: Buffalo, Buffalo

Comments

Post new comment

The content of this field is kept private and will not be shown publicly.
Users posting comments agree to the CIO comments policy.
Login or register to link comments to your user profile, or you may also post a comment without being logged in.
Related Coverage
Related Whitepapers
Latest Stories
Community Comments
Tags: phishers, phishing, security
Latest Blog Posts
Whitepapers
  • The Need for DLP (data leak prevention) now
    When it comes to the terabytes of confidential and proprietary data on corporate networks, companies often use kid gloves to secure the data. This begs the question, why are office supplies subject to a higher level of security than the data? Many organisations are turning to a DLP solution to help them in gaining control over their seemingly uncontrolled data stores.
    Learn more »
  • So Long, Silos: Why Multi-Domain MDM Is Better For Your Business
    Say “so long” to silos. This white paper explains why a multi-domain MDM solution is far better than single-domain, single-focused point solutions. You’ll learn what to look for in a multi-domain solution so you don’t outgrow it or are forced to purchase multiple products down the road. You’ll also get tips on how to select a multi-domain solution that can lead to multiple benefits over many years. The age of multi-domain MDM is here. See why you should say “hello” to it!
    Learn more »
  • Enterprise Buyers Guide for Printers
    Every enterprise owns, and regularly replaces, printers, copiers, multifunctional products and fax machines. The problem most face is not too few choices, but too many. How do you even begin to select the right one? Here is the Computerworld guide to buying a printer for the enterprise.
    Learn more »
All whitepapers
rhs_login_lockGet exclusive access to Invitation only events CIO, reports & analysis.
Recent comments