We use cookies to make your experience of our website better. Details of our privacy policy is available here, and is also linked in the footer text on all pages.

Centre for Security, Communications and Network Research (CSCAN)  

Centre for Security, Communications and Network Research

Plymouth University

CSCAN with Plymouth University

Request a publication

Paper Title

Education in the 'Virtual' Community: Can beating Malware Man teach users about Social Networking Security?

Authors

Sercombe AA, Papadaki M

Publication/Conference

Proceedings of the Sixth International Symposium on Human Aspects of Information Security & Assurance (HAISA 2012)

Reference

Crete, Greece, ISBN: 978-1-84102-317-5, pp33-39

Year

2012

Abstract

Social Networks have become part of daily life for millions of people and by their very nature they encourage information sharing. 2011 was a year that saw numerous targeted "Spear Phishing" attacks in which it was clear that attackers gained knowledge about victims prior to carrying out their attacks. There is evidence that social media has been utilised as the source for this information so therefore it is more important than ever that users are educated against the risks.

This paper starts by looking at the current threats and awareness strategies. It then describes the design and evaluation of an online game to help educate users. The game has a central 'Malware Man' character and a firewall which burns him if the player answers correctly. The success of the game was evaluated using an experiment with a group of participants who had played the game, and a control group who had not. 101 users participated in the study. The results suggest that the game was successful in educating users as the average percentage of correct answers was 77% for those who had played the game, compared to 55% for those who had not.

Further Information

Can be ordered on-line.

Status

This publication is available for on-line download (PDF).

Request a copy

Please complete the following form (required fields indicated with *)
Please only submit the form once, it may take a few seconds to process.

Name

*

Organisation

*

Email Address

*

Comments (optional)

Captcha

CAPTCHA - click to change *

Centre for Security, Communications and Network Research (CSCAN), Room A304 Portland Square, Plymouth University, Plymouth, PL4 8AA, United Kingdom
Telephone: +44 (0) 1752 586234, Fax: +44 (0) 1752 586300, Email: info@cscan.org