Mitigation strategies against the phishing attacks: A systematic literature review

被引:22
|
作者
Naqvi, Bilal [1 ]
Perova, Kseniia [1 ]
Farooq, Ali [2 ,3 ]
Makhdoom, Imran [4 ]
Oyedeji, Shola [1 ]
Porras, Jari [1 ]
机构
[1] LUT Univ, Software Engn, LENS, Lappeenranta, Finland
[2] Hamad Bin Khalifa Univ, Qatar Comp Res Inst, Doha, Qatar
[3] Univ Turku, Dept Comp, Turku, Finland
[4] Natl Univ Sci & Technol, Islamabad, Pakistan
关键词
Guidelines and recommendations; Mitigation strategies; Phishing attacks; Systematic; Literature review; GOOGLE-SCHOLAR; WEB; SCIENCE; SCOPUS;
D O I
10.1016/j.cose.2023.103387
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Phishing attacks are among the most prevalent attack mechanisms employed by attackers. The conse-quences of successful phishing include (and are not limited to) financial losses, impact on reputation, and identity theft. The paper presents a systematic literature review featuring 248 articles (from the be-ginning of 2018 until March 2023) across the main digital libraries to identify, (1) the existing mitigation strategies against phishing attacks, and the underlying technologies considered in the development of these strategies; (2) the most considered phishing vectors in the development of the mitigation strate-gies; (3) anti-phishing guidelines and recommendations for organizations and end-users respectively; and (4) gaps and open issues that exist in the state of the art. The paper advocates for the need to con-sider the abilities of human users during the design and development of the mitigation strategies as only technology-centric solutions will not suffice to cater to the challenges posed by phishing attacks. & COPY; 2023 The Author(s). Published by Elsevier Ltd. This is an open access article under the CC BY license ( http://creativecommons.org/licenses/by/4.0/ )
引用
收藏
页数:25
相关论文
共 50 条
  • [11] The Role of Extraversion in Phishing Victimisation: A Systematic Literature Review
    Lopez-Aguilar, Pablo
    Patsakis, Constantinos
    Solanas, Agusti
    2022 APWG SYMPOSIUM ON ELECTRONIC CRIME RESEARCH, ECRIME, 2022,
  • [12] Protecting users against phishing attacks
    Kirda, Engin
    Kruegel, Christopher
    COMPUTER JOURNAL, 2006, 49 (05): : 554 - 561
  • [13] Phishing Attacks and Protection against Them
    Ivanov, Michael A.
    Kliuchnikova, Bogdana V.
    Chugunkov, Ilya V.
    Plaksina, Anna M.
    Proceedings of the 2021 IEEE Conference of Russian Young Researchers in Electrical and Electronic Engineering, ElConRus 2021, 2021, : 425 - 428
  • [14] Analysis of phishing attacks against students
    Andric, Jakov
    Oreski, Dijana
    Kisasondi, Tonimir
    2016 39TH INTERNATIONAL CONVENTION ON INFORMATION AND COMMUNICATION TECHNOLOGY, ELECTRONICS AND MICROELECTRONICS (MIPRO), 2016, : 1423 - 1429
  • [15] Phishing Attacks and Protection Against Them
    Ivanov, Michael A.
    Kliuchnikova, Bogdana, V
    Chugunkov, Ilya, V
    Plaksina, Anna M.
    PROCEEDINGS OF THE 2021 IEEE CONFERENCE OF RUSSIAN YOUNG RESEARCHERS IN ELECTRICAL AND ELECTRONIC ENGINEERING (ELCONRUS), 2021, : 425 - 428
  • [16] Protecting users against phishing attacks
    Kirda, Engin
    Kruegel, Christopher
    Computer Journal, 2006, 49 (05): : 554 - 561
  • [17] Protection mechanisms against phishing attacks
    Plössl, K
    Federrath, H
    Nowey, T
    TRUST, PRIVACY, AND SECURITY IN DIGITAL BUSINESS, 2005, 3592 : 20 - 29
  • [18] Designing resilient supply chain networks: a systematic literature review of mitigation strategies
    Roshani, Abdolreza
    Walker-Davies, Philip
    Parry, Glenn
    ANNALS OF OPERATIONS RESEARCH, 2024, 341 (2-3) : 1267 - 1332
  • [19] Supply chain barriers for electric vehicles and their mitigation strategies: systematic literature review
    Pandey, Atul
    Nandan, Tanuj
    INTERNATIONAL JOURNAL OF ELECTRIC AND HYBRID VEHICLES, 2022, 14 (04) : 269 - 295
  • [20] A systematic literature review on Ransomware attacks
    School of Engineering, University of Guelph, Guelph
    ON, Canada
    arXiv, 1600,