Users really do answer telephone scams

Huahong Tu, Adam Doupé, Ziming Zhao, Gail Joon Ahn

Research output: Chapter in Book/Report/Conference proceedingConference contribution

Abstract

As telephone scams become increasingly prevalent, it is crucial to understand what causes recipients to fall victim to these scams. Armed with this knowledge, effective countermeasures can be developed to challenge the key foundations of successful telephone phishing attacks. In this paper, we present the methodology, design, execution, results, and evaluation of an ethical telephone phishing scam. The study performed 10 telephone phishing experiments on 3,000 university participants without prior awareness over the course of a workweek. Overall, we were able to identify at least one key factor-spoofed Caller ID-that had a significant effect in tricking the victims into revealing their Social Security number.

Original languageEnglish (US)
Title of host publicationProceedings of the 28th USENIX Security Symposium
PublisherUSENIX Association
Pages1327-1340
Number of pages14
ISBN (Electronic)9781939133069
StatePublished - Jan 1 2019
Event28th USENIX Security Symposium - Santa Clara, United States
Duration: Aug 14 2019Aug 16 2019

Publication series

NameProceedings of the 28th USENIX Security Symposium

Conference

Conference28th USENIX Security Symposium
CountryUnited States
CitySanta Clara
Period8/14/198/16/19

Fingerprint

Telephone
Experiments

ASJC Scopus subject areas

  • Computer Networks and Communications
  • Information Systems
  • Safety, Risk, Reliability and Quality

Cite this

Tu, H., Doupé, A., Zhao, Z., & Ahn, G. J. (2019). Users really do answer telephone scams. In Proceedings of the 28th USENIX Security Symposium (pp. 1327-1340). (Proceedings of the 28th USENIX Security Symposium). USENIX Association.

Users really do answer telephone scams. / Tu, Huahong; Doupé, Adam; Zhao, Ziming; Ahn, Gail Joon.

Proceedings of the 28th USENIX Security Symposium. USENIX Association, 2019. p. 1327-1340 (Proceedings of the 28th USENIX Security Symposium).

Research output: Chapter in Book/Report/Conference proceedingConference contribution

Tu, H, Doupé, A, Zhao, Z & Ahn, GJ 2019, Users really do answer telephone scams. in Proceedings of the 28th USENIX Security Symposium. Proceedings of the 28th USENIX Security Symposium, USENIX Association, pp. 1327-1340, 28th USENIX Security Symposium, Santa Clara, United States, 8/14/19.
Tu H, Doupé A, Zhao Z, Ahn GJ. Users really do answer telephone scams. In Proceedings of the 28th USENIX Security Symposium. USENIX Association. 2019. p. 1327-1340. (Proceedings of the 28th USENIX Security Symposium).
Tu, Huahong ; Doupé, Adam ; Zhao, Ziming ; Ahn, Gail Joon. / Users really do answer telephone scams. Proceedings of the 28th USENIX Security Symposium. USENIX Association, 2019. pp. 1327-1340 (Proceedings of the 28th USENIX Security Symposium).
@inproceedings{973e98ec48814e0faea2f75170b0f77e,
title = "Users really do answer telephone scams",
abstract = "As telephone scams become increasingly prevalent, it is crucial to understand what causes recipients to fall victim to these scams. Armed with this knowledge, effective countermeasures can be developed to challenge the key foundations of successful telephone phishing attacks. In this paper, we present the methodology, design, execution, results, and evaluation of an ethical telephone phishing scam. The study performed 10 telephone phishing experiments on 3,000 university participants without prior awareness over the course of a workweek. Overall, we were able to identify at least one key factor-spoofed Caller ID-that had a significant effect in tricking the victims into revealing their Social Security number.",
author = "Huahong Tu and Adam Doup{\'e} and Ziming Zhao and Ahn, {Gail Joon}",
year = "2019",
month = "1",
day = "1",
language = "English (US)",
series = "Proceedings of the 28th USENIX Security Symposium",
publisher = "USENIX Association",
pages = "1327--1340",
booktitle = "Proceedings of the 28th USENIX Security Symposium",

}

TY - GEN

T1 - Users really do answer telephone scams

AU - Tu, Huahong

AU - Doupé, Adam

AU - Zhao, Ziming

AU - Ahn, Gail Joon

PY - 2019/1/1

Y1 - 2019/1/1

N2 - As telephone scams become increasingly prevalent, it is crucial to understand what causes recipients to fall victim to these scams. Armed with this knowledge, effective countermeasures can be developed to challenge the key foundations of successful telephone phishing attacks. In this paper, we present the methodology, design, execution, results, and evaluation of an ethical telephone phishing scam. The study performed 10 telephone phishing experiments on 3,000 university participants without prior awareness over the course of a workweek. Overall, we were able to identify at least one key factor-spoofed Caller ID-that had a significant effect in tricking the victims into revealing their Social Security number.

AB - As telephone scams become increasingly prevalent, it is crucial to understand what causes recipients to fall victim to these scams. Armed with this knowledge, effective countermeasures can be developed to challenge the key foundations of successful telephone phishing attacks. In this paper, we present the methodology, design, execution, results, and evaluation of an ethical telephone phishing scam. The study performed 10 telephone phishing experiments on 3,000 university participants without prior awareness over the course of a workweek. Overall, we were able to identify at least one key factor-spoofed Caller ID-that had a significant effect in tricking the victims into revealing their Social Security number.

UR - http://www.scopus.com/inward/record.url?scp=85076378073&partnerID=8YFLogxK

UR - http://www.scopus.com/inward/citedby.url?scp=85076378073&partnerID=8YFLogxK

M3 - Conference contribution

AN - SCOPUS:85076378073

T3 - Proceedings of the 28th USENIX Security Symposium

SP - 1327

EP - 1340

BT - Proceedings of the 28th USENIX Security Symposium

PB - USENIX Association

ER -