{"id":"https://openalex.org/W2135122992","doi":"https://doi.org/10.1108/imcs-11-2013-0083","title":"Using phishing experiments and scenario-based surveys to understand security behaviours in practice","display_name":"Using phishing experiments and scenario-based surveys to understand security behaviours in practice","publication_year":2014,"publication_date":"2014-10-07","ids":{"openalex":"https://openalex.org/W2135122992","doi":"https://doi.org/10.1108/imcs-11-2013-0083","mag":"2135122992"},"language":"en","primary_location":{"id":"doi:10.1108/imcs-11-2013-0083","is_oa":false,"landing_page_url":"https://doi.org/10.1108/imcs-11-2013-0083","pdf_url":null,"source":{"id":"https://openalex.org/S204075876","display_name":"Information Management & Computer Security","issn_l":"0968-5227","issn":["0968-5227","1758-5805"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319811","host_organization_name":"Emerald Publishing Limited","host_organization_lineage":["https://openalex.org/P4310319811"],"host_organization_lineage_names":["Emerald Publishing Limited"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Information Management &amp; Computer Security","raw_type":"journal-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5025719028","display_name":"Waldo Rocha Flores","orcid":null},"institutions":[{"id":"https://openalex.org/I86987016","display_name":"KTH Royal Institute of Technology","ror":"https://ror.org/026vcq606","country_code":"SE","type":"education","lineage":["https://openalex.org/I86987016"]}],"countries":["SE"],"is_corresponding":false,"raw_author_name":"Waldo Rocha Flores","raw_affiliation_strings":["Department of Industrial Information and Control Systems, Royal Institute of Technology, Stockholm, Sweden"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Department of Industrial Information and Control Systems, Royal Institute of Technology, Stockholm, Sweden","institution_ids":["https://openalex.org/I86987016"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5103165985","display_name":"Hannes Holm","orcid":null},"institutions":[{"id":"https://openalex.org/I86987016","display_name":"KTH Royal Institute of Technology","ror":"https://ror.org/026vcq606","country_code":"SE","type":"education","lineage":["https://openalex.org/I86987016"]}],"countries":["SE"],"is_corresponding":false,"raw_author_name":"Hannes Holm","raw_affiliation_strings":["Department of Industrial Information and Control Systems, Royal Institute of Technology, Stockholm, Sweden"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Department of Industrial Information and Control Systems, Royal Institute of Technology, Stockholm, Sweden","institution_ids":["https://openalex.org/I86987016"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5086996349","display_name":"Gustav Svensson","orcid":null},"institutions":[{"id":"https://openalex.org/I86987016","display_name":"KTH Royal Institute of Technology","ror":"https://ror.org/026vcq606","country_code":"SE","type":"education","lineage":["https://openalex.org/I86987016"]}],"countries":["SE"],"is_corresponding":false,"raw_author_name":"Gustav Svensson","raw_affiliation_strings":["Department of Industrial Information and Control Systems, Royal Institute of Technology, Stockholm, Sweden"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Department of Industrial Information and Control Systems, Royal Institute of Technology, Stockholm, Sweden","institution_ids":["https://openalex.org/I86987016"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5109332976","display_name":"G\u00f6ran N. Ericsson","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"G\u00f6ran Ericsson","raw_affiliation_strings":["Swedish National Grid, Stockholm, Sweden"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Swedish National Grid, Stockholm, Sweden","institution_ids":[]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":4,"corresponding_author_ids":[],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":7.3834,"has_fulltext":false,"cited_by_count":62,"citation_normalized_percentile":{"value":0.96901862,"is_in_top_1_percent":false,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":90,"max":99},"biblio":{"volume":"22","issue":"4","first_page":"393","last_page":"406"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11644","display_name":"Spam and Phishing Detection","score":0.9998000264167786,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11644","display_name":"Spam and Phishing Detection","score":0.9998000264167786,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10734","display_name":"Information and Cyber Security","score":0.9994000196456909,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T12519","display_name":"Cybercrime and Law Enforcement Studies","score":0.9976999759674072,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/phishing","display_name":"Phishing","score":0.927649974822998},{"id":"https://openalex.org/keywords/helpfulness","display_name":"Helpfulness","score":0.8608152866363525},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.5662141442298889},{"id":"https://openalex.org/keywords/survey-data-collection","display_name":"Survey data collection","score":0.45415109395980835},{"id":"https://openalex.org/keywords/applied-psychology","display_name":"Applied psychology","score":0.41499680280685425},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.39176177978515625},{"id":"https://openalex.org/keywords/psychology","display_name":"Psychology","score":0.3714069128036499},{"id":"https://openalex.org/keywords/internet-privacy","display_name":"Internet privacy","score":0.326238751411438},{"id":"https://openalex.org/keywords/social-psychology","display_name":"Social psychology","score":0.26035070419311523},{"id":"https://openalex.org/keywords/world-wide-web","display_name":"World Wide Web","score":0.18084734678268433},{"id":"https://openalex.org/keywords/statistics","display_name":"Statistics","score":0.1549118459224701},{"id":"https://openalex.org/keywords/the-internet","display_name":"The Internet","score":0.1277216374874115},{"id":"https://openalex.org/keywords/mathematics","display_name":"Mathematics","score":0.07307520508766174}],"concepts":[{"id":"https://openalex.org/C83860907","wikidata":"https://www.wikidata.org/wiki/Q135005","display_name":"Phishing","level":3,"score":0.927649974822998},{"id":"https://openalex.org/C2781265381","wikidata":"https://www.wikidata.org/wiki/Q5710255","display_name":"Helpfulness","level":2,"score":0.8608152866363525},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.5662141442298889},{"id":"https://openalex.org/C198477413","wikidata":"https://www.wikidata.org/wiki/Q7647069","display_name":"Survey data collection","level":2,"score":0.45415109395980835},{"id":"https://openalex.org/C75630572","wikidata":"https://www.wikidata.org/wiki/Q538904","display_name":"Applied psychology","level":1,"score":0.41499680280685425},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.39176177978515625},{"id":"https://openalex.org/C15744967","wikidata":"https://www.wikidata.org/wiki/Q9418","display_name":"Psychology","level":0,"score":0.3714069128036499},{"id":"https://openalex.org/C108827166","wikidata":"https://www.wikidata.org/wiki/Q175975","display_name":"Internet privacy","level":1,"score":0.326238751411438},{"id":"https://openalex.org/C77805123","wikidata":"https://www.wikidata.org/wiki/Q161272","display_name":"Social psychology","level":1,"score":0.26035070419311523},{"id":"https://openalex.org/C136764020","wikidata":"https://www.wikidata.org/wiki/Q466","display_name":"World Wide Web","level":1,"score":0.18084734678268433},{"id":"https://openalex.org/C105795698","wikidata":"https://www.wikidata.org/wiki/Q12483","display_name":"Statistics","level":1,"score":0.1549118459224701},{"id":"https://openalex.org/C110875604","wikidata":"https://www.wikidata.org/wiki/Q75","display_name":"The Internet","level":2,"score":0.1277216374874115},{"id":"https://openalex.org/C33923547","wikidata":"https://www.wikidata.org/wiki/Q395","display_name":"Mathematics","level":0,"score":0.07307520508766174}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1108/imcs-11-2013-0083","is_oa":false,"landing_page_url":"https://doi.org/10.1108/imcs-11-2013-0083","pdf_url":null,"source":{"id":"https://openalex.org/S204075876","display_name":"Information Management & Computer Security","issn_l":"0968-5227","issn":["0968-5227","1758-5805"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319811","host_organization_name":"Emerald Publishing Limited","host_organization_lineage":["https://openalex.org/P4310319811"],"host_organization_lineage_names":["Emerald Publishing Limited"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Information Management &amp; Computer Security","raw_type":"journal-article"}],"best_oa_location":null,"sustainable_development_goals":[{"score":0.5799999833106995,"id":"https://metadata.un.org/sdg/5","display_name":"Gender equality"}],"awards":[],"funders":[],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":25,"referenced_works":["https://openalex.org/W1511039991","https://openalex.org/W1536786776","https://openalex.org/W1561778784","https://openalex.org/W1595545752","https://openalex.org/W1983208818","https://openalex.org/W2019176237","https://openalex.org/W2024488177","https://openalex.org/W2043042131","https://openalex.org/W2067933440","https://openalex.org/W2081526168","https://openalex.org/W2081840305","https://openalex.org/W2082348123","https://openalex.org/W2083112004","https://openalex.org/W2095610745","https://openalex.org/W2106096361","https://openalex.org/W2131906261","https://openalex.org/W2140379305","https://openalex.org/W2162532690","https://openalex.org/W2168379157","https://openalex.org/W2335888457","https://openalex.org/W2538080009","https://openalex.org/W2977726480","https://openalex.org/W3021112008","https://openalex.org/W4242386856","https://openalex.org/W6674628898"],"related_works":["https://openalex.org/W2613921548","https://openalex.org/W4285360723","https://openalex.org/W4281847990","https://openalex.org/W2002563848","https://openalex.org/W2570913877","https://openalex.org/W3037056935","https://openalex.org/W2934621214","https://openalex.org/W2092282862","https://openalex.org/W2611407113","https://openalex.org/W4386357470"],"abstract_inverted_index":{"Purpose":[0],"\u2013":[1,66,96,189,290],"The":[2,97],"purpose":[3],"of":[4,46,76,106,279,286,322],"the":[5,38,44,47,100,104,113,134,138,170,176,179,183,194,203,210,215,229,246,250,258,277,283,320],"study":[6],"was":[7,185,232],"threefold:":[8],"to":[9,23,32,40,53,121,150,154,226,239,294,297,313],"understand":[10,298,314],"security":[11,299],"behaviours":[12,300],"in":[13,92,109,169,276,282,305],"practice":[14],"by":[15,29,167,202],"investigating":[16],"factors":[17],"that":[18,103,115,193,207,255,309],"may":[19,197],"cause":[20],"an":[21,41,110,116,122,126],"individual":[22],"comply":[24],"with":[25,164],"a":[26,30,58,74,83,155,161],"request":[27],"posed":[28],"perpetrator;":[31],"investigate":[33,54],"if":[34,55,315],"adding":[35],"information":[36,108,287,312,317],"about":[37],"victim":[39,120],"attack":[42,48,111,157,323],"increases":[43],"probability":[45,321],"being":[49],"successful;":[50],"and,":[51],"finally,":[52],"there":[56],"is":[57,192,206,325],"correlation":[59,163,174],"between":[60,175],"self-reported":[61],"and":[62,89,129,146,182,218,223,244,270],"observed":[63],"behaviour.":[64],"Design/methodology/approach":[65],"Factors":[67],"for":[68],"investigation":[69],"were":[70,80,236],"identified":[71],"based":[72],"on":[73,228],"review":[75],"existing":[77],"literature.":[78],"Data":[79,235],"collected":[81,238],"through":[82],"scenario-based":[84,171,180,195],"survey,":[85],"phishing":[86,139,216],"experiments,":[87],"journals":[88],"follow-up":[90],"interviews":[91],"three":[93],"organisations.":[94],"Findings":[95],"results":[98,177,251],"from":[99,178],"experiment":[101],"revealed":[102],"degree":[105],"target":[107,311],"increased":[112],"likelihood":[114],"organisational":[117],"employee":[118],"falls":[119],"actual":[123,135],"attack.":[124],"Further,":[125],"individual\u2019s":[127],"trust":[128],"risk":[130],"behaviour":[131,136,165],"significantly":[132],"affected":[133],"during":[137,243],"experiment.":[140],"Computer":[141],"experience":[142],"at":[143],"work,":[144],"helpfulness":[145],"gender":[147],"(females":[148],"tend":[149],"be":[151,262,274],"less":[152],"susceptible":[153],"generic":[156],"than":[158],"men),":[159],"had":[160],"significant":[162],"reported":[166],"respondents":[168],"survey.":[172],"No":[173],"survey":[181,196],"experiments":[184],"found.":[186],"Research":[187],"limitations/implications":[188],"One":[190],"limitation":[191],"have":[198,267,301],"been":[199,303],"interpreted":[200],"differently":[201],"participants.":[204],"Another":[205],"controlling":[208],"how":[209],"participants":[211],"reacted":[212],"when":[213],"receiving":[214],"mail,":[217],"what":[219],"actually":[220],"triggered":[221],"each":[222],"every":[224],"participant":[225],"click":[227],"attached":[230],"link,":[231],"not":[233,253],"possible.":[234],"however":[237],"capture":[240],"these":[241],"aspects":[242],"after":[245],"experiments.":[247],"In":[248],"conclusion,":[249],"do":[252],"imply":[254],"one":[256],"or":[257],"other":[259],"method":[260],"should":[261,273],"ruled":[263],"out,":[264],"as":[265],"they":[266],"both":[268,330],"advantages":[269],"disadvantages":[271],"which":[272],"considered":[275],"context":[278],"collecting":[280],"data":[281,296],"critical":[284],"domain":[285],"security.":[288],"Originality/value":[289],"Two":[291],"different":[292],"methods":[293],"collect":[295],"rarely":[302],"used":[304],"previous":[306],"research.":[307],"Studies":[308],"add":[310],"such":[316],"could":[318],"increase":[319],"success":[324],"sparse.":[326],"This":[327],"paper":[328],"includes":[329],"approaches.":[331]},"counts_by_year":[{"year":2026,"cited_by_count":1},{"year":2025,"cited_by_count":6},{"year":2024,"cited_by_count":9},{"year":2023,"cited_by_count":6},{"year":2022,"cited_by_count":10},{"year":2021,"cited_by_count":2},{"year":2020,"cited_by_count":10},{"year":2019,"cited_by_count":1},{"year":2018,"cited_by_count":8},{"year":2017,"cited_by_count":1},{"year":2016,"cited_by_count":3},{"year":2015,"cited_by_count":3},{"year":2014,"cited_by_count":2}],"updated_date":"2026-06-11T09:08:48.828518","created_date":"2025-10-10T00:00:00"}
