Phishing
An online game has been designed to teach surfers how to recognise phishing attacks
R E L A T E D   C O N T E N T
ADVERTISEMENT

Carnegie Mellon floats anti-phishing game

Game on for Anti-Phishing Phil

Robert Jaques, vnunet.com 26 Sep 2007
ADVERTISEMENT

US computer scientists have unveiled an online game designed to teach surfers how to recognise phishing attacks and other web scams.

Designed by a team at Carnegie Mellon University, the game features a fish called 'Phil'.

Tests at the Carnegie Usable Privacy and Security (Cups) Laboratory found that people who spent 15 minutes playing the Anti-Phishing Phil game were better able to identify fraudulent websites than people who spent the same amount of time reading traditional anti-phishing tutorials.

"We believe that education is essential if people are to avoid being ripped-off by phishing attacks and similar online scams," said Cups Lab director Lorrie Cranor.

"Unlike viruses or spyware, phishing attacks do not exploit weaknesses in hardware or software, but take advantage of the way people use computers and their often-limited knowledge of the way computers work."

Steve Sheng, a Ph.D. student in Carnegie Mellon's Engineering and Public Policy Department, and lead developer of Anti-Phishing Phil, added: "We designed the game to teach people how to use web addresses, or URLs, to identify phishing sites. The tactic can also be useful in analysing suspicious email messages."

In addition to Cranor and Sheng, Anti-Phishing Phil developers include Carnegie Mellon faculty members Jason Hong and Alessandro Acquisti, and students Bryant Magnien and Ponnurangam Kumaraguru.

The Cups Lab has also collaborated with Portugal Telecom to develop a Portuguese version of the game called Anti-Phishing Ze.

As part of ongoing field tests, the researchers asked surfers to visit the Anti-Phishing Phil site and click on the 'Play the game!' link. Participants will be asked to take a short quiz, play the game and then take another quiz.

Those who leave their email address and participate in a follow-up quiz a week later will be eligible for a raffle prize of a $100 Amazon gift card.

See also:

Lie about your age, advises security firm  17 Sep 2007
PhishingCyber-criminals responsible for 10,000 web page hacks  21 Aug 2007
House of Lords report sparks security debate  10 Aug 2007
$7 billion over the last two years and counting  07 Aug 2007
94 per cent of spam-advertised online scams are hosted on individual web servers  07 Aug 2007

All Hacking

Like this story? Spread the news by clicking below:

Post this to Delicious del.icio.us    Post this to Digg Digg this    Post this to reddit reddit!

Permalink for this story

M A R K E T P L A C E
Sponsored links
F E A T U R E D   J O B S
United Kingdom | London Borough of Sutton
Business Relationship Manager (Finance), Based at Civic Offices, £ 41,790 - £ 44,373  (PO 7)   Fixed Term to 31st March 2009 The IT service has four Business Relationship Managers (BRM); each one responsible for delivering and developing ... more >
Leeds, United Kingdom | UKCRN
Network and Infrastructure Manager, Leeds When you join us, you'll develop and implement our Information Systems Strategy with respect to hardware, network infrastructure and security management, and develop business cases that support procurement. More specifically, ... more >
Buckinghamshire, United Kingdom | Grass Roots
Business Analyst x4, Aylesbury, Buckinghamshire, Excellent Salary + Benefits Grass Roots are one of the Sunday Times Top 100 companies to work for (2007 and 2008). Established in 1980, we're part of the Grass Roots ... more >
Leeds, United Kingdom | UKCRN
 Portal Systems Manager, Leeds Besides taking responsibility for the day-to-day technical operations of our portal, you'll also manage the systems and administration team. It's vital that you understand the strategic aim of the Portal and, ... more >
More job opportunities