{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,11,20]],"date-time":"2025-11-20T18:24:37Z","timestamp":1763663077958,"version":"3.41.2"},"reference-count":21,"publisher":"Emerald","issue":"2","license":[{"start":{"date-parts":[[2013,6,7]],"date-time":"2013-06-07T00:00:00Z","timestamp":1370563200000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.emerald.com\/insight\/site-policies"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2013,6,7]]},"abstract":"<jats:sec><jats:title content-type=\"abstract-heading\">Purpose<\/jats:title><jats:p>This study attempts to develop an efficient concept to mitigate the risks of social engineering in the era of social networks. For instance friend requests on Facebook are often accepted blindly, thus granting unknown people access to profile details. These problems fuel requirements for an application, developed in this study, that raises awareness of security issues in Facebook.<\/jats:p><\/jats:sec><jats:sec><jats:title content-type=\"abstract-heading\">Design\/methodology\/approach<\/jats:title><jats:p>The \u201cTheory of Planned Behaviour\u201d (TPB), a model from psychology to predict behaviour, is used as a theoretical foundation for the application. Attitudes, perceived behavioural control and social norms are the main variables of this model. Social norms can be massively affected by the Facebook friends and therefore an application is developed which uses this in order to raise awareness.<\/jats:p><\/jats:sec><jats:sec><jats:title content-type=\"abstract-heading\">Findings<\/jats:title><jats:p>The application propagated itself virally. Out of 117 users of the application, 15 took action to change the public\u2010search option visibility from public to private. The use of the application took on average 10.5 minutes.<\/jats:p><\/jats:sec><jats:sec><jats:title content-type=\"abstract-heading\">Originality\/value<\/jats:title><jats:p>Applications that scan a Facebook profile for fishy content already exist. However, at the time of writing this paper, no application specifically written against social engineering was known to the author.<\/jats:p><\/jats:sec>","DOI":"10.1108\/imcs-09-2012-0053","type":"journal-article","created":{"date-parts":[[2013,7,25]],"date-time":"2013-07-25T14:11:56Z","timestamp":1374761516000},"page":"91-101","source":"Crossref","is-referenced-by-count":9,"title":["Social against social engineering"],"prefix":"10.1108","volume":"21","author":[{"given":"Iwan","family":"Gulenko","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"140","reference":[{"key":"key2022030919435230900_b1","doi-asserted-by":"crossref","unstructured":"Acquisti, R. and Gross, R. (2006), \u201cImagined communities: awareness, information sharing, and privacy on the facebook\u201d, 6th Workshop on Privacy Enhancing Technologies, pp. 36\u201058.","DOI":"10.1007\/11957454_3"},{"key":"key2022030919435230900_b2","doi-asserted-by":"crossref","unstructured":"Ajzen, I. (1991), \u201cThe theory of planned behavior\u201d, Organizational Behavior and Human Decision Processes, available at: http:\/\/econpapers.repec.org\/RePEc:eee:jobhdp:v:50:y:1991:i:2:p:179\u2010211.","DOI":"10.1016\/0749-5978(91)90020-T"},{"key":"key2022030919435230900_b6","unstructured":"Anonymous (2011), Facebook.com \u2013 Statistics, available at: www.facebook.com\/press\/info.php?statistics (accessed 13 May 2011)."},{"key":"key2022030919435230900_b8","unstructured":"Bowe, R. (2010), \u201cReturn of the Facebook snatchers\u201d, available at: www.skullsecurity.org\/blog\/2010\/return\u2010of\u2010the\u2010facebook\u2010snatchers (accessed 8 June 2011)."},{"key":"key2022030919435230900_b9","unstructured":"Dimensional\u2010Research (2011), \u201cThe risk of social engineering on information security: a survey of it professionals\u201d, Technical Report, Dimensional\u2010Research, Long Beach, CA."},{"key":"key2022030919435230900_b11","unstructured":"Gilbert, D. (2006), \u201cIf only gay sex caused global warming\u201d, available at: www.commondreams.org\/views06\/0702\u201026.htm (accessed 10 October 2011)."},{"key":"key2022030919435230900_b12","doi-asserted-by":"crossref","unstructured":"Gross, R. and Acquisti, A. (2005), \u201cInformation revelation and privacy in online social networks (the Facebook case)\u201d, Proceedings of the 2005 ACM Workshop on Privacy in the Electronic Society, available at: www.heinz.cmu.edu\/\u223cacquisti\/papers\/privacy\u2010facebook\u2010gross\u2010acquisti.pdf.","DOI":"10.1145\/1102199.1102214"},{"key":"key2022030919435230900_b13","unstructured":"Hadnagy, C. (2010), Social Engineering: The Art of Human Hacking, 1 Auflage, Wiley, Hoboken, NJ."},{"key":"key2022030919435230900_b14","unstructured":"Herkanaidu, R. (2011), \u201cThe rise of targeted attacks\u201d, available at: www.securelist.com\/en\/blog\/514\/The rise of targeted attacks (accessed 14 June 2011)."},{"key":"key2022030919435230900_b15","doi-asserted-by":"crossref","unstructured":"Irani, D., Balduzzi, M., Balzarotti, D., Kirda, E. and Pu, C. (2011), \u201cReverse social engineering attacks in online social networks\u201d, Proceedings of the 8th International Conference on Detection of Intrusions and Malware, and Vulnerability Assessment, Springer, Berlin, DIMVA'11, available at: http:\/\/dl.acm.org\/citation.cfm?id=2026647.2026653.","DOI":"10.1007\/978-3-642-22424-9_4"},{"key":"key2022030919435230900_b16","unstructured":"Jagatic, T.N., Johnson, N.A., Jakobsson, M. and Menczer, F. (2007), \u201cSocial phishing\u201d, Communications of the ACM, available at: http:\/\/portal.acm.org\/citation.cfm?doid=1290958.1290968."},{"key":"key2022030919435230900_b17","unstructured":"Mattarelli, M. (2007), Uberprufung der \u201cTheory of planned behavior\u201d, von Ajzen and Fishbein (1977) und deren Erweiterung durch \u201cRechtfertigungsprozesse\u201d am Beispiel Littering, Ref.: Roland W. Scholz., available at: http:\/\/books.google.com\/books?id=ZzAccgAACAAJ."},{"key":"key2022030919435230900_b19","unstructured":"Meredith, L. (2010), \u201cFacebook replaces email, instant messaging online\u201d, available at: www.livescience.com\/6822\u2010facebook\u2010replaces\u2010email\u2010instant\u2010messaging\u2010online.html?utm source=feedburner&utmmedium=feed&utmcampaign=Feed%3A+Livesciencecom+%28LiveScience.com+Science+Headline+Feed%29 (accessed 30 August 2011)."},{"key":"key2022030919435230900_b20","unstructured":"Mitnick, K.W.L.S. (2003), The Art of Deception: Controlling the Human Element of Security, 1 Auflage, Wiley, Hoboken, NJ."},{"key":"key2022030919435230900_b22","unstructured":"Schermann, M., Gehlert, A., Pohl, K. and Krcmar, H. (2009), \u201cJustifying design decisions with theory\u2010based design principles\u201d, 17th European Conference on Information Systems Information Systems in a Globalized World: Challenges, Ethics and Practices, Verona, pp. S. 2870\u2010S. 2881."},{"key":"key2022030919435230900_b23","doi-asserted-by":"crossref","unstructured":"Schneier, B. (2008), \u201cThe psychology of security\u201d, available at: www.schneier.com\/essay\u2010155.pdf.","DOI":"10.1038\/452155b"},{"key":"key2022030919435230900_b24","doi-asserted-by":"crossref","unstructured":"Thomson, M.E. and von Solms, R. (1998), \u201cInformation security awareness: educating your users effectively\u201d, Inf. Manag. Comput. Security, Vol. 6 No. 4, pp. 167\u2010173.","DOI":"10.1108\/09685229810227649"},{"key":"key2022030919435230900_frd1","unstructured":"Angwin, J., Raice, S. and Ante, S.E. (2011), \u201cFacebook retreats on privacy\u201d, available at: http:\/\/online.wsj.com\/articleemail\/SB10001424052970204224604577030383745515166\u2010lMyQjAxMTAxMDEwMDExNDAyWj.html (accessed 11 December 2011)."},{"key":"key2022030919435230900_frd3","doi-asserted-by":"crossref","unstructured":"Boshmaf, Y., Muslukhov, I., Beznosov, K. and Ripeanu, M. (2011), The Socialbot Network: When Bots Socialize for Fame and Money, ACSAC, Orlando, FL.","DOI":"10.1145\/2076732.2076746"},{"key":"key2022030919435230900_frd4","unstructured":"McKeon, M. (2011), \u201cThe evolution of privacy on facebook\u201d, available at: www.mattmckeon.com\/facebook\u2010privacy\/ (accessed 13 May 2011)."},{"key":"key2022030919435230900_frd5","unstructured":"O'Neill, N. (2009), \u201c10 privacy settings every Facebook user should know\u201d, available at: www.allfacebook.com\/facebook\u2010privacy\u20102009\u201002."}],"container-title":["Information Management &amp; Computer Security"],"original-title":[],"language":"en","link":[{"URL":"http:\/\/www.emeraldinsight.com\/doi\/full-xml\/10.1108\/IMCS-09-2012-0053","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/www.emerald.com\/insight\/content\/doi\/10.1108\/IMCS-09-2012-0053\/full\/xml","content-type":"application\/xml","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/www.emerald.com\/insight\/content\/doi\/10.1108\/IMCS-09-2012-0053\/full\/html","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,7,24]],"date-time":"2025-07-24T21:50:48Z","timestamp":1753393848000},"score":1,"resource":{"primary":{"URL":"http:\/\/www.emerald.com\/ics\/article\/21\/2\/91-101\/180526"}},"subtitle":["Concept and development of a Facebook application to raise security and risk awareness"],"editor":[{"given":"Veniamin","family":"Ginodman","sequence":"first","affiliation":[],"role":[{"role":"editor","vocabulary":"crossref"}]}],"short-title":[],"issued":{"date-parts":[[2013,6,7]]},"references-count":21,"journal-issue":{"issue":"2","published-print":{"date-parts":[[2013,6,7]]}},"alternative-id":["10.1108\/IMCS-09-2012-0053"],"URL":"https:\/\/doi.org\/10.1108\/imcs-09-2012-0053","relation":{},"ISSN":["0968-5227"],"issn-type":[{"type":"print","value":"0968-5227"}],"subject":[],"published":{"date-parts":[[2013,6,7]]}}}