skip to main content
US FlagAn official website of the United States government
dot gov icon
Official websites use .gov
A .gov website belongs to an official government organization in the United States.
https lock icon
Secure .gov websites use HTTPS
A lock ( lock ) or https:// means you've safely connected to the .gov website. Share sensitive information only on official, secure websites.


Title: The effects of persuasion principles on perceived honesty during shoulder surfing attacks
PurposeThis study aimed to investigate how honest participants perceived an attacker to be during shoulder surfing scenarios that varied in terms of which Principle of Persuasion in Social Engineering (PPSE) was used, whether perceived honesty changed as scenarios progressed, and whether any changes were greater in some scenarios than others. Design/methodology/approachParticipants read one of six shoulder surfing scenarios. Five depicted an attacker using one of the PPSEs. The other depicted an attacker using as few PPSEs as possible, which served as a control condition. Participants then rated perceived attacker honesty. FindingsThe results revealed honesty ratings in each condition were equal during the beginning of the conversation, participants in each condition perceived the attacker to be honest during the beginning of the conversation, perceived attacker honesty declined when the attacker requested the target perform an action that would afford shoulder surfing, perceived attacker honesty declined more when the Distraction and Social Proof PPSEs were used, participants perceived the attacker to be dishonest when making such requests using the Distraction and Social Proof PPSEs and perceived attacker honesty did not change when the attacker used the target’s computer. Originality/valueTo the best of the authors’ knowledge, this experiment is the first to investigate how persuasion tactics affect perceptions of attackers during shoulder surfing attacks. These results have important implications for shoulder surfing prevention training programs and penetration tests.  more » « less
Award ID(s):
2319802
PAR ID:
10611854
Author(s) / Creator(s):
; ; ; ;
Publisher / Repository:
Emerald
Date Published:
Journal Name:
Information & Computer Security
Volume:
33
Issue:
2
ISSN:
2056-4961
Page Range / eLocation ID:
267 to 283
Format(s):
Medium: X
Sponsoring Org:
National Science Foundation
More Like this
  1. PurposeThe National Science Foundation (NSF) Research Experience for Undergraduates (REU) programs are traditionally delivered in-person and full-time (40 h per week) for 10 weeks during the summer. However, this type of format has the potential to limit broader student participation. This study aims to compare learning assessment data between a traditional NSF REU (10 weeks of summer, full-time, in-person) to an alternative NSF REU delivered virtually, part-time and over 10 months as a result of the coronavirus disease 2019 (COVID-19) pandemic. Design/methodology/approachA retrospective pre-then-post survey was completed to assess perceived learning gains for each REU program. Three learning gains categories were assessed: entrepreneurial competencies, career goals and research skill development.T-tests were used to evaluate a difference in means between pre and post. FindingsFindings show the greatest quantity of learning gains within the alternative program delivery. Moreover, a larger quantity of learning gains was perceived within the first semester of the alternative program delivery compared to the second semester. Practical implicationsThe authors propose the NSF should be intentional about trying new approaches to REU programs delivery, including duration and format, as a way to broaden participation in engineering. Originality/valueThis study is original in that it is the first of its kind to assess an alternative REU program delivery (allowed only because of the COVID-19 pandemic) in comparison to traditional REU program delivery. 
    more » « less
  2. PurposeThe paper aims to determine the rational homotopy type of the total space of projectivized bundles over complex projective spaces using Sullivan minimal models, providing insights into the algebraic structure of these spaces. Design/methodology/approachThe paper utilises techniques from Sullivan’s theory of minimal models to analyse the differential graded algebraic structure of projectivized bundles. It employs algebraic methods to compute the Sullivan minimal model of P ( E ) and establish relationships with the base space. FindingsThe paper determines the rational homotopy type of projectivized bundles over complex projective spaces. Of great interest is how the Chern classes of the fibre space and base space, play a critical role in determining the Sullivan model ofP(E). We also provide the homogeneous space ofP(E)whenn = 2. Finally, we prove the formality ofP(E)over a homogeneous space of equal rank. Research limitations/implicationsLimitations may include the complexity of computing minimal models for higher-dimensional bundles. Practical implicationsUnderstanding the rational homotopy type of projectivized bundles facilitates computations in algebraic topology and differential geometry, potentially aiding in applications such as topological data analysis and geometric modelling. Social implicationsWhile the direct social impact may be indirect, advancements in algebraic topology contribute to broader mathematical knowledge, which can underpin developments in science, engineering, and technology with societal benefits. Originality/valueThe paper’s originality lies in its application of Sullivan minimal models to determine the rational homotopy type of projectivized bundles over complex projective spaces, offering valuable insights into the algebraic structure of these spaces and their associated complex vector bundles. 
    more » « less
  3. PurposeThe purpose of this study was to examine the experiences of multiple campus teams as they engaged in the assessment of their science, technology, engineering and mathematics (STEM) mentoring ecosystems within a peer assessment dialogue exercise. Design/methodology/approachThis project utilized a qualitative multicase study method involving six campus teams, drawing upon completed inventory and visual mapping artefacts, session observations and debriefing interviews. The campuses included research universities, small colleges and minority-serving institutions (MSIs) across the United States of America. The authors analysed which features of the peer assessment dialogue exercise scaffolded participants' learning about ecosystem synergies and threats. FindingsThe results illustrated the benefit of instructor modelling, intra-team process time and multiple rounds of peer assessment. Participants gained new insights into their own campuses and an increased sense of possibility by dialoguing with peer campuses. Research limitations/implicationsThis project involved teams from a small set of institutions, relying on observational and self-reported debriefing data. Future research could centre perspectives of institutional leaders. Practical implicationsThe authors recommend dedicating time to the institutional assessment of mentoring ecosystems. Investing in a campus-wide mentoring infrastructure could align with campus equity goals. Originality/valueIn contrast to studies that have focussed solely on programmatic outcomes of mentoring, this study explored strategies to strengthen institutional mentoring ecosystems in higher education, with a focus on peer assessment, dialogue and learning exercises. 
    more » « less
  4. null (Ed.)
    Objective To understand how aspects of vishing calls (phishing phone calls) influence perceived visher honesty. Background Little is understood about how targeted individuals behave during vishing attacks. According to truth-default theory, people assume others are being honest until something triggers their suspicion. We investigated whether that was true during vishing attacks. Methods Twenty-four participants read written descriptions of eight real-world vishing calls. Half included highly sensitive requests; the remainder included seemingly innocuous requests. Participants rated visher honesty at multiple points during conversations. Results Participants initially perceived vishers to be honest. Honesty ratings decreased before requests occurred. Honesty ratings decreased further in response to highly sensitive requests, but not seemingly innocuous requests. Honesty ratings recovered somewhat, but only after highly sensitive requests. Conclusions The present results revealed five important insights: (1) people begin vishing conversations in the truth-default state, (2) certain aspects of vishing conversations serve as triggers, (3) other aspects of vishing conversations do not serve as triggers, (4) in certain situations, people’s perceptions of visher honesty improve, and, more generally, (5) truth-default theory may be a useful tool for understanding how targeted individuals behave during vishing attacks. Application Those developing systems that help users deal with suspected vishing attacks or penetration testing plans should consider (1) targeted individuals’ truth-bias, (2) the influence of visher demeanor on the likelihood of deception detection, (3) the influence of fabricated situations surrounding vishing requests on the likelihood of deception detection, and (4) targeted individuals’ lack of concern about seemingly innocuous requests. 
    more » « less
  5. PurposeThis study aims to investigate the use of a sociotechnical case study as a means of integrating social and technical dimensions into an undergraduate engineering sustainability technical elective course. Design/methodology/approachThe “Big Wind Project” case study used a microhistory approach to engage students in the complexities of sustainable engineering, aiming to facilitate their exploration of the sociotechnical nature of engineering sustainability projects. Focused on a controversial wind energy project in Hawaii, the Big Wind Project case study served as a pedagogical tool in the course for engaging engineering students in complex sustainability challenges. FindingsThirty-nine students who engaged in the case study lesson responded to questions about their perceptions of the case and the role of stakeholders and other social dimensions in engineering decision-making and agreed that we could use their responses in this research. While many students acknowledged the importance of accounting for social dimensions, their discussions frequently reflected a persistent tendency of engineering work to view outcomes through a dualistic technical-vs-social lens rather than an integrated sociotechnical lens. Originality/valueThis study examined how a case study reveals and supports students’ navigation of the complexities of sociotechnical engineering sustainability work. 
    more » « less