{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,7,14]],"date-time":"2026-07-14T02:25:30Z","timestamp":1783995930915,"version":"3.55.0"},"reference-count":36,"publisher":"Emerald","issue":"3","license":[{"start":{"date-parts":[[2018,7,9]],"date-time":"2018-07-09T00:00:00Z","timestamp":1531094400000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.emerald.com\/insight\/site-policies"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["ICS"],"published-print":{"date-parts":[[2018,7,9]]},"abstract":"<jats:sec><jats:title content-type=\"abstract-subheading\">Purpose<\/jats:title>\n<jats:p>The purpose of this paper is to test the protection motivation theory (PMT) in the context of fear appeal interventions to reduce the threat of phishing attacks. In addition, it was tested to what extent the model relations are equivalent across fear appeal conditions and across time.<\/jats:p>\n<\/jats:sec>\n<jats:sec><jats:title content-type=\"abstract-subheading\">Design\/methodology\/approach<\/jats:title>\n<jats:p>A pre-test post-test design was used. In the pre-test, 1,201 internet users filled out an online survey and were presented with one of three fear appeal conditions: strong fear appeal, weak fear appeal and control condition. Arguments regarding vulnerability of phishing attacks and response efficacy of vigilant online information-sharing behaviour were manipulated in the fear appeals. In the post-test, data were collected from 786 internet users and analysed with partial least squares path modelling.<\/jats:p>\n<\/jats:sec>\n<jats:sec><jats:title content-type=\"abstract-subheading\">Findings<\/jats:title>\n<jats:p>The study found that PMT model relations hold in the domain of phishing. Self-efficacy and fear were the most important predictors of protection motivation. In general, the model results were equivalent across conditions and across time.<\/jats:p>\n<\/jats:sec>\n<jats:sec><jats:title content-type=\"abstract-subheading\">Practical Implications<\/jats:title>\n<jats:p>It is important to consider online information-sharing behaviour because it facilitates the occurrence and success of phishing attacks. The results give practitioners more insight into important factors to address in the design of preventative measures to reduce the success of phishing attacks. Future research is needed to test how fear appeals work in real-world settings and over longer periods.<\/jats:p>\n<\/jats:sec>\n<jats:sec><jats:title content-type=\"abstract-subheading\">Originality\/value<\/jats:title>\n<jats:p>This paper is a substantial adaptation of a previous conference paper (Jansen and Van Schaik, 2017a, b).<\/jats:p>\n<\/jats:sec>","DOI":"10.1108\/ics-03-2018-0038","type":"journal-article","created":{"date-parts":[[2018,6,1]],"date-time":"2018-06-01T07:07:25Z","timestamp":1527836845000},"page":"264-276","source":"Crossref","is-referenced-by-count":31,"title":["Persuading end users to act cautiously online: a fear appeals study on phishing"],"prefix":"10.1108","volume":"26","author":[{"given":"Jurjen","family":"Jansen","sequence":"first","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Paul","family":"van Schaik","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"140","reference":[{"key":"key2020092806562364500_ref001","doi-asserted-by":"crossref","first-page":"69","DOI":"10.1016\/j.ijhcs.2015.05.005","article-title":"Why phishing still works: user strategies for combating phishing attacks","volume":"82","year":"2015","journal-title":"International Journal of Human-Computer Studies"},{"issue":"3","key":"key2020092806562364500_ref002","doi-asserted-by":"crossref","first-page":"613","DOI":"10.2307\/25750694","article-title":"Practicing safe computing: a multimethod empirical examination of home computer user security behavioral intentions","volume":"34","year":"2010","journal-title":"MIS Quarterly"},{"key":"key2020092806562364500_ref003","unstructured":"APWG (2015), \u201cPhishing activity trends report: 4th quarter 2014\u201d, available at: http:\/\/docs.apwg.org\/reports\/apwg_trends_report_q4_2014.pdf"},{"key":"key2020092806562364500_ref004","doi-asserted-by":"crossref","first-page":"185","DOI":"10.1016\/j.chb.2016.02.065","article-title":"Phishing threat avoidance behaviour: an empirical investigation","volume":"60","year":"2016","journal-title":"Computers in Human Behavior"},{"key":"key2020092806562364500_ref005","first-page":"103","article-title":"Unpacking security policy compliance: the motivators and barriers of employees\u2019 security behaviors","year":"2015"},{"issue":"10","key":"key2020092806562364500_ref006","doi-asserted-by":"crossref","first-page":"1022","DOI":"10.1080\/0144929X.2015.1028448","article-title":"Determinants of online safety behaviour: towards an intervention strategy for college students","volume":"34","year":"2015","journal-title":"Behaviour & Information Technology"},{"key":"key2020092806562364500_ref007","unstructured":"Bull\u00e9e, J.-W. (2017) \u201cExperimental social engineering: Investigation and prevention\u201d, PhD thesis, University of Twente, Enschede."},{"key":"key2020092806562364500_ref008","first-page":"347","article-title":"Handcrafted fraud and extortion: manual account hijacking in the wild","year":"2014"},{"key":"key2020092806562364500_ref009","first-page":"1","article-title":"The quest for complete security: an empirical analysis of users\u2019 multi-layered protection from security threats","year":"2017","journal-title":"Information Systems Frontiers"},{"key":"key2020092806562364500_ref010","volume-title":"Predicting and Changing Behavior: The Reasoned Action Approach","year":"2010"},{"issue":"2","key":"key2020092806562364500_ref011","doi-asserted-by":"crossref","first-page":"407","DOI":"10.1111\/j.1559-1816.2000.tb02323.x","article-title":"A Meta-analysis of research on protection motivation theory","volume":"30","year":"2000","journal-title":"Journal of Applied Social Psychology"},{"issue":"5","key":"key2020092806562364500_ref012","doi-asserted-by":"crossref","first-page":"410","DOI":"10.1016\/j.cose.2007.03.001","article-title":"Assessing the security perceptions of personal internet users","volume":"26","year":"2007","journal-title":"Computers & Security"},{"key":"key2020092806562364500_ref013","volume-title":"A Primer on Partial Least Squares Structural Equation Modeling (PLS-SEM)","year":"2014"},{"key":"key2020092806562364500_ref014","first-page":"277","article-title":"The use of partial least squares path modeling in international marketing","volume-title":"Advances in International Marketing","year":"2009"},{"issue":"1","key":"key2020092806562364500_ref015","doi-asserted-by":"crossref","first-page":"83","DOI":"10.1016\/j.cose.2011.10.007","article-title":"Understanding information systems security policy compliance: an integration of the theory of planned behavior and the protection motivation theory","volume":"31","year":"2012","journal-title":"Computers & Security"},{"key":"key2020092806562364500_ref016","first-page":"24","article-title":"How people help fraudsters steal their money: an analysis of 600 online banking fraud cases","year":"2015"},{"issue":"2","key":"key2020092806562364500_ref017","doi-asserted-by":"crossref","first-page":"165","DOI":"10.1108\/ICS-03-2017-0018","article-title":"Comparing three models to explain precautionary online behavioural intentions","volume":"25","year":"2017","journal-title":"Information and Computer Security"},{"key":"key2020092806562364500_ref018","first-page":"1","article-title":"Persuading end users to act cautiously online: initial findings of a fear appeals study on phishing","year":"2017"},{"issue":"1","key":"key2020092806562364500_ref019","doi-asserted-by":"crossref","first-page":"113","DOI":"10.25300\/MISQ\/2015\/39.1.06","article-title":"An enhanced fear appeal rhetorical framework: leveraging threats to the human asset through sanctioning rhetoric","volume":"39","year":"2015","journal-title":"MIS Quarterly"},{"key":"key2020092806562364500_ref020","volume-title":"Slachtofferschap Cybercrime En Internetgebruik [Cybercrime Victimization and Internet Use]","year":"2015"},{"issue":"1","key":"key2020092806562364500_ref021","first-page":"1","article-title":"Achieving a consensual definition of phishing based on a systematic review of the literature","volume":"3","year":"2014","journal-title":"Crime Science"},{"issue":"5","key":"key2020092806562364500_ref022","doi-asserted-by":"crossref","first-page":"469","DOI":"10.1016\/0022-1031(83)90023-9","article-title":"Protection motivation and self-efficacy: a revised theory of fear appeals and attitude change","volume":"19","year":"1983","journal-title":"Journal of Experimental Social Psychology"},{"issue":"1","key":"key2020092806562364500_ref023","doi-asserted-by":"crossref","first-page":"106","DOI":"10.1111\/j.1559-1816.2000.tb02308.x","article-title":"Prediction and intervention in health-related behavior: a Meta-analytic review of protection motivation theory","volume":"30","year":"2000","journal-title":"Journal of Applied Social Psychology"},{"issue":"4","key":"key2020092806562364500_ref024","doi-asserted-by":"crossref","first-page":"815","DOI":"10.1016\/j.dss.2008.11.010","article-title":"Studying users\u2019 computer security behavior: a health belief perspective","volume":"46","year":"2009","journal-title":"Decision Support Systems"},{"issue":"1","key":"key2020092806562364500_ref025","doi-asserted-by":"crossref","first-page":"100","DOI":"10.1111\/j.1745-6606.2006.00070.x","article-title":"The privacy paradox: personal information disclosure intentions versus behaviors","volume":"41","year":"2007","journal-title":"Journal of Consumer Affairs"},{"key":"key2020092806562364500_ref026","first-page":"123","article-title":"The elaboration likelihood model of persuasion","volume-title":"Advances in Experimental Social Psychology","year":"1986"},{"issue":"4","key":"key2020092806562364500_ref027","doi-asserted-by":"crossref","first-page":"179","DOI":"10.1080\/07421222.2015.1138374","article-title":"The impact of organizational commitment on insiders\u2019 motivation to protect organizational information assets","volume":"32","year":"2015","journal-title":"Journal of Management Information Systems"},{"issue":"5","key":"key2020092806562364500_ref028","doi-asserted-by":"crossref","first-page":"382","DOI":"10.1108\/09685221211286548","article-title":"Phishing counter measures and their effectiveness \u2013 literature review","volume":"20","year":"2012","journal-title":"Information Management & Computer Security"},{"key":"key2020092806562364500_ref029","unstructured":"Ringle, C.M., Wende, S. and Will, A. (2005), \u201cSmartPLS 2.0.M3\u201d, SmartPLS, Hamburg, available at: www.smartpls.com"},{"issue":"4","key":"key2020092806562364500_ref030","doi-asserted-by":"crossref","first-page":"393","DOI":"10.1108\/IMCS-11-2013-0083","article-title":"Using phishing experiments and scenario-based surveys to understand security behaviours in practice","volume":"22","year":"2014","journal-title":"Information Management & Computer Security"},{"issue":"1","key":"key2020092806562364500_ref031","doi-asserted-by":"crossref","first-page":"93","DOI":"10.1080\/00223980.1975.9915803","article-title":"A protection motivation theory of fear appeals and attitude change","volume":"91","year":"1975","journal-title":"The Journal of Psychology"},{"issue":"2","key":"key2020092806562364500_ref032","doi-asserted-by":"crossref","first-page":"511","DOI":"10.1037\/a0033065","article-title":"Does heightening risk appraisals change people\u2019s intentions and behavior? A Meta-analysis of experimental studies","volume":"140","year":"2014","journal-title":"Psychological Bulletin"},{"key":"key2020092806562364500_ref033","doi-asserted-by":"crossref","first-page":"199","DOI":"10.1016\/j.chb.2015.01.046","article-title":"Online safety begins with you and me: convincing internet users to protect themselves","volume":"48","year":"2015","journal-title":"Computers in Human Behavior"},{"key":"key2020092806562364500_ref034","doi-asserted-by":"crossref","first-page":"277","DOI":"10.17705\/1CAIS.04113","article-title":"To fear or not to fear? A critical review and analysis of fear appeals in the information security context","volume":"41","year":"2017","journal-title":"Communications of the Association for Information Systems"},{"issue":"4","key":"key2020092806562364500_ref035","doi-asserted-by":"crossref","first-page":"317","DOI":"10.1080\/108107396127988","article-title":"Predicting risk behaviors: development and validation of a diagnostic scale","volume":"1","year":"1996","journal-title":"Journal of Health Communication"},{"issue":"5","key":"key2020092806562364500_ref036","doi-asserted-by":"crossref","first-page":"591","DOI":"10.1177\/109019810002700506","article-title":"A Meta-analysis of fear appeals: implications for effective public health campaigns","volume":"27","year":"2000","journal-title":"Health Education & Behavior"}],"container-title":["Information &amp; Computer Security"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/www.emerald.com\/insight\/content\/doi\/10.1108\/ICS-03-2018-0038\/full\/xml","content-type":"application\/xml","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/www.emerald.com\/insight\/content\/doi\/10.1108\/ICS-03-2018-0038\/full\/html","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,7,25]],"date-time":"2025-07-25T01:22:46Z","timestamp":1753406566000},"score":1,"resource":{"primary":{"URL":"http:\/\/www.emerald.com\/ics\/article\/26\/3\/264-276\/192321"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2018,7,9]]},"references-count":36,"journal-issue":{"issue":"3","published-print":{"date-parts":[[2018,7,9]]}},"alternative-id":["10.1108\/ICS-03-2018-0038"],"URL":"https:\/\/doi.org\/10.1108\/ics-03-2018-0038","relation":{},"ISSN":["2056-4961"],"issn-type":[{"value":"2056-4961","type":"print"}],"subject":[],"published":{"date-parts":[[2018,7,9]]}}}