<link rel="stylesheet" href="styles.f3b1fba60ec7970c.css">

Соціальна інженерія як загроза кібербезпеці: методи запобігання та захисту

Анотація

The relevance of the study of social engineering is due to the ever-growing number of cyberattacks that use the human factor as the main penetration vector. Attackers, using various methods such as phishing, vishing, pretexting, and others, cause significant damage to organisations by stealing confidential data, undermining reputation, and disrupting the smooth operation of business processes. The growth of social engineering-related cyberattacks requires improving the legal framework and developing new cybersecurity standards. The article analyses modern methods of social engineering, their impact on information systems and organisations, and identifies the main areas of protection against these threats. Particular attention is paid to the role of the human factor in cybersecurity and the need for an integrated approach that combines technical, organisational and educational measures. Particular attention is paid to the challenges associated with the human factor in cybersecurity systems, as well as the importance of an integrated approach to combating these threats. The author substantiates the need to integrate cybersecurity education and training programmes to reduce the risk of successful social engineering attacks. Prospects for further research are identified, in particular in the development of interactive training programmes to raise user awareness and the development of new algorithms for the automatic detection of social attack attempts

Опис

УДК

Тип документа

Мова

Є частиною

Бібліографічний опис

Жмурко О. І. Соціальна інженерія як загроза кібербезпеці: методи запобігання та захисту // Педагогіка безпеки. № 1. Вінниця, 2024. С. 37-42.

Схвалення

Рецензія

Доповнено

Цитується в

Список використаної літератури (3)

  1. Bullee, J.-W. (2017). Experimental Social Engineering: Investigation and Prevention (dissirtation to obtain the degree or doctor at the University of Twente). Enschede, The Niderland. doi: 10.3990/1.9789036543972.
  2. Jampen, D., Gür, G., Sutter, T., & Tellenbach, B. (2020). Don’t click: towards an effective anti-phishing training. A comparative literature review. Human-centric Computing and Information Sciences, 10(1). https://doi.org/10.1186/s13673-020-00237-7
  3. Zhurin, S. I., & Komarkov, D. E. (2018). Protection of external information perimeter of organization from spear phishing. Bezopasnost informacionnyh tehnology, 25(4), 96–108. https://doi.org/10.26583/bit.2018.4.09