A2 Refereed review article in a scientific journal
Mitigation strategies against the phishing attacks: A systematic literature review
Authors: Naqvi Bilal, Perova Kseniia, Farooq Ali, Makhdoom Imran, Oyedeji Shola, Porras Jari
Publisher: Elsevier Ltd
Publication year: 2023
Journal: Computers and Security
Journal name in source: Computers and Security
Article number: 103387
Volume: 132
ISSN: 0167-4048
eISSN: 1872-6208
DOI: https://doi.org/10.1016/j.cose.2023.103387
Web address : https://doi.org/10.1016/j.cose.2023.103387
Self-archived copy’s web address: https://research.utu.fi/converis/portal/detail/Publication/180484714
Phishing attacks are among the most prevalent attack mechanisms employed by attackers. The consequences of successful phishing include (and are not limited to) financial losses, impact on reputation, and identity theft. The paper presents a systematic literature review featuring 248 articles (from the beginning of 2018 until March 2023) across the main digital libraries to identify, (1) the existing mitigation strategies against phishing attacks, and the underlying technologies considered in the development of these strategies; (2) the most considered phishing vectors in the development of the mitigation strategies; (3) anti-phishing guidelines and recommendations for organizations and end-users respectively; and (4) gaps and open issues that exist in the state of the art. The paper advocates for the need to consider the abilities of human users during the design and development of the mitigation strategies as only technology-centric solutions will not suffice to cater to the challenges posed by phishing attacks.
Downloadable publication This is an electronic reprint of the original article. |