{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,5,6]],"date-time":"2026-05-06T23:13:12Z","timestamp":1778109192412,"version":"3.51.4"},"publisher-location":"Cham","reference-count":35,"publisher":"Springer Nature Switzerland","isbn-type":[{"value":"9783032160911","type":"print"},{"value":"9783032160928","type":"electronic"}],"license":[{"start":{"date-parts":[[2026,1,1]],"date-time":"2026-01-01T00:00:00Z","timestamp":1767225600000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"},{"start":{"date-parts":[[2026,1,1]],"date-time":"2026-01-01T00:00:00Z","timestamp":1767225600000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2026]]},"DOI":"10.1007\/978-3-032-16092-8_15","type":"book-chapter","created":{"date-parts":[[2026,5,6]],"date-time":"2026-05-06T22:40:49Z","timestamp":1778107249000},"page":"275-295","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":0,"title":["In-Context Learning for\u00a0the\u00a0Classification of\u00a0Manipulation Techniques in\u00a0Phishing Emails"],"prefix":"10.1007","author":[{"ORCID":"https:\/\/orcid.org\/0009-0009-0019-112X","authenticated-orcid":false,"given":"Antony","family":"Dalmiere","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0009-0001-2775-5345","authenticated-orcid":false,"given":"Guillaume","family":"Auriol","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-9482-004X","authenticated-orcid":false,"given":"Vincent","family":"Nicomette","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-4190-8213","authenticated-orcid":false,"given":"Pascal","family":"Marchand","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2026,5,1]]},"reference":[{"key":"15_CR1","unstructured":"Antoun, W., Kulumba, F., Touchent, R., de la Clergerie, \u00c9., Sagot, B., Seddah, D.: CamemBERT 2.0: a smarter French language model aged to perfection (2024)"},{"key":"15_CR2","unstructured":"Basnet, R.B., Sung, A.H., Liu, Q.: Rule-based phishing attack detection. In: International Conference on Security and Management (SAM 2011), Las Vegas, NV (2011)"},{"issue":"1","key":"15_CR3","doi-asserted-by":"publisher","first-page":"28","DOI":"10.1109\/MSP.2013.106","volume":"12","author":"DD Caputo","year":"2014","unstructured":"Caputo, D.D., Pfleeger, S.L., Freeman, J.D., Johnson, M.E.: Going spear phishing: exploring embedded training and awareness. IEEE Secur. Priv. 12(1), 28\u201338 (2014). https:\/\/doi.org\/10.1109\/MSP.2013.106","journal-title":"IEEE Secur. Priv."},{"issue":"2","key":"15_CR4","doi-asserted-by":"publisher","first-page":"76","DOI":"10.1038\/scientificamerican0201-76","volume":"284","author":"R Cialdini","year":"2001","unstructured":"Cialdini, R.: The science of persuasion. Sci. Am. 284(2), 76\u201381 (2001)","journal-title":"Sci. Am."},{"key":"15_CR5","unstructured":"Cialdini, R.B., et\u00a0al.: Influence: Science and Practice, vol.\u00a04. Pearson education Boston (2009)"},{"key":"15_CR6","unstructured":"Dalmiere, A., Nicomette, V., Auriol, G., Marchand, P.: A classification of manipulation technique used in social engineering attacks and underlying cognitive biases, needs, norms, and emotions. In: Thcon25. Toulouse, France (2025)"},{"key":"15_CR7","unstructured":"Evanko-Douglas, K.: Can GPT-3 create synthetic training data for machine learning models? AmeliorMate Research Report (2021)"},{"key":"15_CR8","doi-asserted-by":"publisher","unstructured":"Ferreira, A., Coventry, L., Lenzini, G.: Principles of persuasion in social engineering and their use in phishing. In: Tryfonas, T., Askoxylakis, I. (eds.) Human Aspects of Information Security, Privacy, and Trust, pp. 36\u201347. LNCS, Springer International Publishing, Cham (2015). https:\/\/doi.org\/10.1007\/978-3-319-20376-8_4","DOI":"10.1007\/978-3-319-20376-8_4"},{"key":"15_CR9","doi-asserted-by":"publisher","unstructured":"Fette, I., Sadeh, N., Tomasic, A.: Learning to detect phishing emails. In: Proceedings of the 16th International Conference on World Wide Web, pp. 649\u2013656. ACM, Banff Alberta Canada (2007). https:\/\/doi.org\/10.1145\/1242572.1242660","DOI":"10.1145\/1242572.1242660"},{"key":"15_CR10","doi-asserted-by":"publisher","unstructured":"Garera, S., Provos, N., Chew, M., Rubin, A.D.: A framework for detection and measurement of phishing attacks. In: Proceedings of the 2007 ACM Workshop on Recurring Malcode, pp.\u00a01\u20138. ACM, Alexandria Virginia USA (2007). https:\/\/doi.org\/10.1145\/1314389.1314391","DOI":"10.1145\/1314389.1314391"},{"key":"15_CR11","doi-asserted-by":"publisher","unstructured":"Gikandi, J., Kamau, J., Njuguna, D., Sawe, L.: Sentence level analysis model for phishing detection using KNN. J. Cyber Secur. 6(1), 25\u201339 (2024). https:\/\/doi.org\/10.32604\/jcs.2023.045859, https:\/\/www.techscience.com\/JCS\/v6n1\/55181","DOI":"10.32604\/jcs.2023.045859"},{"issue":"3","key":"15_CR12","doi-asserted-by":"publisher","first-page":"472","DOI":"10.1086\/586910","volume":"35","author":"NJ Goldstein","year":"2008","unstructured":"Goldstein, N.J., Cialdini, R.B., Griskevicius, V.: A room with a viewpoint: using social norms to motivate environmental conservation in hotels. J. Consum. Res. 35(3), 472\u2013482 (2008)","journal-title":"J. Consum. Res."},{"key":"15_CR13","doi-asserted-by":"publisher","unstructured":"Herley, C.: So long, and no thanks for the externalities: the rational rejection of security advice by users. In: Proceedings of the 2009 Workshop on New Security Paradigms Workshop, pp. 133\u2013144. ACM, Oxford United Kingdom (2009). https:\/\/doi.org\/10.1145\/1719030.1719050","DOI":"10.1145\/1719030.1719050"},{"issue":"10","key":"15_CR14","doi-asserted-by":"publisher","first-page":"94","DOI":"10.1145\/1290958.1290968","volume":"50","author":"TN Jagatic","year":"2007","unstructured":"Jagatic, T.N., Johnson, N.A., Jakobsson, M., Menczer, F.: Social phishing. Commun. ACM 50(10), 94\u2013100 (2007). https:\/\/doi.org\/10.1145\/1290958.1290968","journal-title":"Commun. ACM"},{"key":"15_CR15","unstructured":"Kahneman, D.: Thinking, Fast and Slow. Farrar, Straus and Giroux, New York, 1st ed edn. (2011)"},{"issue":"6","key":"15_CR16","doi-asserted-by":"publisher","first-page":"835","DOI":"10.1108\/OIR-03-2012-0037","volume":"37","author":"D Kim","year":"2013","unstructured":"Kim, D., Hyun Kim, J.: Understanding persuasive elements in phishing e-mails: a categorical content and semantic network analysis. Online Inf. Rev. 37(6), 835\u2013850 (2013). https:\/\/doi.org\/10.1108\/OIR-03-2012-0037","journal-title":"Online Inf. Rev."},{"key":"15_CR17","doi-asserted-by":"publisher","unstructured":"Koide, T., Fukushi, N., Nakano, H., Chiba, D.: ChatSpamDetector: leveraging large language models for effective phishing email detection (2024). https:\/\/doi.org\/10.48550\/ARXIV.2402.18093","DOI":"10.48550\/ARXIV.2402.18093"},{"key":"15_CR18","doi-asserted-by":"crossref","unstructured":"Kyaw, P.H., Gutierrez, J., Ghobakhlou, A.: A systematic review of deep learning techniques for phishing email detection. Electronics 13(19), 3823 (2024)","DOI":"10.3390\/electronics13193823"},{"key":"15_CR19","doi-asserted-by":"publisher","unstructured":"Lee, K., Caverlee, J., Webb, S.: The social honeypot project: protecting online communities from spammers. In: Proceedings of the 19th International Conference on World Wide Web, pp. 1139\u20131140. ACM, Raleigh North Carolina USA (2010). https:\/\/doi.org\/10.1145\/1772690.1772843","DOI":"10.1145\/1772690.1772843"},{"issue":"1","key":"15_CR20","doi-asserted-by":"publisher","first-page":"278","DOI":"10.1109\/TBDATA.2020.2978915","volume":"8","author":"Q Li","year":"2020","unstructured":"Li, Q., Cheng, M., Wang, J., Sun, B.: LSTM based phishing detection for big email data. IEEE Trans. Big Data 8(1), 278\u2013288 (2020)","journal-title":"IEEE Trans. Big Data"},{"key":"15_CR21","doi-asserted-by":"publisher","unstructured":"Long, L., et al.: On LLMs-driven synthetic data generation, curation, and evaluation: a survey (2024). https:\/\/doi.org\/10.48550\/arXiv.2406.15126","DOI":"10.48550\/arXiv.2406.15126"},{"key":"15_CR22","doi-asserted-by":"crossref","unstructured":"Noah, N., Tayachew, A., Ryan, S., Das, S.: PhisherCop\u202f: developing an NLP-based automated tool for phishing detection. In: Proceedings of the Human Factors and Ergonomics Society Annual Meeting, vol. 66, no. 1, pp. 2093\u20132097 (2022)","DOI":"10.1177\/1071181322661060"},{"issue":"4","key":"15_CR23","doi-asserted-by":"publisher","first-page":"1","DOI":"10.1145\/2890509","volume":"8","author":"M Ovelgonne","year":"2017","unstructured":"Ovelgonne, M., Dumitra\u015f, T., Prakash, B.A., Subrahmanian, V.S., Wang, B.: Understanding the relationship between human behavior and susceptibility to cyber attacks: a data-driven approach. ACM Trans. Intell. Syst. Technol. (TIST) 8(4), 1\u201325 (2017)","journal-title":"ACM Trans. Intell. Syst. Technol. (TIST)"},{"key":"15_CR24","doi-asserted-by":"publisher","unstructured":"Pan, F., Wu, X., Li, Z., Luu, A.T.: Are LLMs good zero-shot fallacy classifiers? (2024). https:\/\/doi.org\/10.48550\/ARXIV.2410.15050","DOI":"10.48550\/ARXIV.2410.15050"},{"key":"15_CR25","first-page":"2825","volume":"12","author":"F Pedregosa","year":"2011","unstructured":"Pedregosa, F., et al.: Scikit-learn: machine learning in Python. J. Mach. Learn. Res. 12, 2825\u20132830 (2011)","journal-title":"J. Mach. Learn. Res."},{"key":"15_CR26","doi-asserted-by":"crossref","unstructured":"Pratkanis, A.R.: Winning hearts and minds: a social influence analysis. In: Information Strategy and Warfare, pp. 72\u2013101. Routledge (2007)","DOI":"10.4324\/9780203945636-10"},{"key":"15_CR27","doi-asserted-by":"crossref","unstructured":"Salloum, S., Gaber, T., Vadera, S., Shaalan, K.: A systematic literature review on phishing email detection using natural language processing techniques. IEEE Access 10, 65703\u201365727 (2022)","DOI":"10.1109\/ACCESS.2022.3183083"},{"key":"15_CR28","doi-asserted-by":"publisher","unstructured":"Shahriar, S., Mukherjee, A., Gnawali, O.: Improving phishing detection via psychological trait scoring (2022). https:\/\/doi.org\/10.48550\/ARXIV.2208.06792","DOI":"10.48550\/ARXIV.2208.06792"},{"key":"15_CR29","doi-asserted-by":"publisher","unstructured":"Sheng, S., Holbrook, M., Kumaraguru, P., Cranor, L.F., Downs, J.: Who falls for phish?: a demographic analysis of phishing susceptibility and effectiveness of interventions. In: Proceedings of the SIGCHI Conference on Human Factors in Computing Systems, pp. 373\u2013382. ACM, Atlanta Georgia USA (2010). https:\/\/doi.org\/10.1145\/1753326.1753383","DOI":"10.1145\/1753326.1753383"},{"key":"15_CR30","doi-asserted-by":"publisher","unstructured":"Sheng, S., et al.: Anti-phishing phil: the design and evaluation of a game that teaches people not to fall for phish. In: Proceedings of the 3rd Symposium on Usable Privacy and Security, pp. 88\u201399. ACM, Pittsburgh Pennsylvania USA (2007). https:\/\/doi.org\/10.1145\/1280680.1280692","DOI":"10.1145\/1280680.1280692"},{"key":"15_CR31","doi-asserted-by":"publisher","unstructured":"Tian, C.A., Jensen, M.L., Bott, G., Luo, X.R.: The influence of affective processing on phishing susceptibility. Eur. J. Inf. Syst., 1\u201315 (2024). https:\/\/doi.org\/10.1080\/0960085X.2024.2351442","DOI":"10.1080\/0960085X.2024.2351442"},{"key":"15_CR32","unstructured":"Whitfield, D.: The magic of synthetic data (2021)"},{"key":"15_CR33","unstructured":"Whittaker, C., Ryner, B., Nazif, M.: Large-scale automatic classification of phishing pages. In: Network and Distributed System Security Symposium (2010)"},{"key":"15_CR34","doi-asserted-by":"publisher","unstructured":"Winata, G.I., Madotto, A., Lin, Z., Liu, R., Yosinski, J., Fung, P.: Language models are few-shot multilingual learners. In: Proceedings of the 1st Workshop on Multilingual Representation Learning, pp. 1\u201315. Association for Computational Linguistics, Punta Cana, Dominican Republic (2021). https:\/\/doi.org\/10.18653\/v1\/2021.mrl-1.1","DOI":"10.18653\/v1\/2021.mrl-1.1"},{"issue":"4","key":"15_CR35","doi-asserted-by":"publisher","first-page":"662","DOI":"10.1002\/asi.20779","volume":"59","author":"M Workman","year":"2008","unstructured":"Workman, M.: Wisecrackers: a theory-grounded investigation of phishing and pretext social engineering threats to information security. J. Am. Soc. Inform. Sci. Technol. 59(4), 662\u2013674 (2008). https:\/\/doi.org\/10.1002\/asi.20779","journal-title":"J. Am. Soc. Inform. Sci. Technol."}],"container-title":["Lecture Notes in Computer Science","Computer Security. ESORICS 2025 International Workshops"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-032-16092-8_15","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2026,5,6]],"date-time":"2026-05-06T22:40:53Z","timestamp":1778107253000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/978-3-032-16092-8_15"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2026]]},"ISBN":["9783032160911","9783032160928"],"references-count":35,"URL":"https:\/\/doi.org\/10.1007\/978-3-032-16092-8_15","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"value":"0302-9743","type":"print"},{"value":"1611-3349","type":"electronic"}],"subject":[],"published":{"date-parts":[[2026]]},"assertion":[{"value":"1 May 2026","order":1,"name":"first_online","label":"First Online","group":{"name":"ChapterHistory","label":"Chapter History"}},{"value":"The authors declare that they have no competing interests relevant to the content of this article.","order":1,"name":"Ethics","group":{"name":"EthicsHeading","label":"Disclosure of Interests"}},{"value":"ESORICS","order":1,"name":"conference_acronym","label":"Conference Acronym","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"European Symposium on Research in Computer Security","order":2,"name":"conference_name","label":"Conference Name","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Toulouse","order":3,"name":"conference_city","label":"Conference City","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"France","order":4,"name":"conference_country","label":"Conference Country","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"2025","order":5,"name":"conference_year","label":"Conference Year","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"22 September 2025","order":7,"name":"conference_start_date","label":"Conference Start Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"26 September 2025","order":8,"name":"conference_end_date","label":"Conference End Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"30","order":9,"name":"conference_number","label":"Conference Number","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"esorics2025","order":10,"name":"conference_id","label":"Conference ID","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"https:\/\/www.esorics2025.org\/","order":11,"name":"conference_url","label":"Conference URL","group":{"name":"ConferenceInfo","label":"Conference Information"}}]}}