Abstract
Baiting, phishing (Conteh and Schmick, 2016), spear-phishing (Bullee et al., 2017), and whaling (Pienta, Thatcher and Johnston, 2020), are not leisure time activities; but types of social engineering cyber-attacks (Conteh and Schmick, 2016), which involve tricking a user into either divulging sensitive information or gaining unauthorised access into their systems. However, there are also cases when proactive organisations are able to safeguard their cyber realm against such breaches. At other times, some organisations are fortunate to learn from the cybersecurity mistakes of their peers (Ashraf, 2022).
Since every other day brings news cyber-incidents, perhaps these offer the proverbial steppingstones to wisdom. In the contemporary era of digitalisation, with widespread dependency on complex digital systems (World Economic Forum, 2022), cyber space acquires a vital significance. Drawing on insights from a recent study conducted by the authors, this paper explores this aspect of cyber-incidents of learning valuable lessons from cyber incidents on the path to robust cybersecurity.
Please choose your submission type
Full Paper
Primary Track
Decision-Making Under Uncertainty