A2 Refereed review article in a scientific journal

Mitigation strategies against the phishing attacks: A systematic literature review




AuthorsNaqvi Bilal, Perova Kseniia, Farooq Ali, Makhdoom Imran, Oyedeji Shola, Porras Jari

PublisherElsevier Ltd

Publication year2023

JournalComputers and Security

Journal name in sourceComputers and Security

Article number103387

Volume132

ISSN0167-4048

eISSN1872-6208

DOIhttps://doi.org/10.1016/j.cose.2023.103387

Web address https://doi.org/10.1016/j.cose.2023.103387

Self-archived copy’s web addresshttps://research.utu.fi/converis/portal/detail/Publication/180484714


Abstract

Phishing attacks are among the most prevalent attack mechanisms employed by attackers. The consequences of successful phishing include (and are not limited to) financial losses, impact on reputation, and identity theft. The paper presents a systematic literature review featuring 248 articles (from the beginning of 2018 until March 2023) across the main digital libraries to identify, (1) the existing mitigation strategies against phishing attacks, and the underlying technologies considered in the development of these strategies; (2) the most considered phishing vectors in the development of the mitigation strategies; (3) anti-phishing guidelines and recommendations for organizations and end-users respectively; and (4) gaps and open issues that exist in the state of the art. The paper advocates for the need to consider the abilities of human users during the design and development of the mitigation strategies as only technology-centric solutions will not suffice to cater to the challenges posed by phishing attacks.


Downloadable publication

This is an electronic reprint of the original article.
This reprint may differ from the original in pagination and typographic detail. Please cite the original version.





Last updated on 2025-27-03 at 21:54