An examination of the effect of recent phishing encounters on phishing susceptibility
作者:
Highlights:
• An individual's phishing susceptibility is shaped by recent phishing encounters.
• Effects of a recent phishing encounter on susceptibility are heterogeneous among users.
• Susceptibility is affected by detection difficulty and detection failures.
• Past success in phishing detection moderates the effect of a recent phishing encounter.
• Phishing desensitization moderates the effect of a recent phishing encounter.
摘要
This paper examines online users' perceived susceptibility to phishing attacks. We posit that an individual's phishing susceptibility may be shaped by recent phishing encounters and, more importantly, that the effect of new experience on susceptibility will be heterogeneous among users. To facilitate our investigation, we focus on both the process and outcome of phishing detection. Survey data from college students confirms that one's susceptibility is affected by detection process difficulty and detection outcome failures in the recent phishing encounter. Results also reveal the importance of personal attributes, such as past success in phishing detection and phishing desensitization, in regulating the effects of a recent phishing encounter. Finally, results show the relationship between detection process difficulty and outcome failures, in addition to confirming antecedents to the two detection components. Our research generates new knowledge that contributes to the phishing literature and it also sheds new insights that inform practitioners, although the use of college students limits the generalizability of the current findings.
论文关键词:Phishing,Susceptibility,Decision making,Detection process,Outcome failure
论文评审过程:Received 11 September 2019, Revised 14 March 2020, Accepted 14 March 2020, Available online 16 March 2020, Version of Record 1 May 2020.
论文官网地址:https://doi.org/10.1016/j.dss.2020.113287