SupportsField experiment · 2024
Heiding et al. — IEEE Access, 12
Click-through was 19-28% for generic control phishing, 30-44% for GPT-4 generated emails, 69-79% for emails designed by hand using the V-Triad cognitive-bias rules, and 43-81% for GPT-4 combined with the V-Triad. Large language models were also fairly good at detecting phishing intent, sometimes beating humans, and cut attacker costs.
SupportsField experiment · 2024
Heiding et al. — arXiv:2412.00586
Fully AI-automated spear-phishing emails drew a 54% click-through rate, matching human experts (54%) and far above arbitrary control phishing (12%), a big jump from comparable AI results a year earlier. The AI's reconnaissance profiles were accurate and useful for 88% of targets, and AI can raise attacker profitability up to 50-fold at scale.
SupportsQualitative · 2023
Pilavakis et al. — Proceedings 2023 Symposium on Usable Security (USEC 2023)
People who report suspected phishing typically describe evidence they noticed, possible impacts, what they did or did not do, and questions they have. Some build clear arguments for why the email is phishing and why the organization should act.
SupportsQualitative · 2020
Wash — Proceedings of the ACM on Human-Computer Interaction (CSCW)
Experts detect phishing in three stages: making sense of the email and noticing small discrepancies, becoming suspicious when something (usually a link asking for action) triggers the phishing explanation, then investigating and deleting or reporting. Training should build this sensemaking process, not just checklists.
SupportsLab experiment · 2018
Vishwanath et al. — Communication Research, 45(8), 1146-1166
Because training effects fade as people slip back into email routines, the authors built a model (SCAM) combining conscious cognitive processing, preconscious suspicion and habitual, automatic email use, and tested it across two phishing experiments. Email habits emerged as a key predictor of susceptibility alongside cognitive processing.
FoundationalConceptual · 2009
Kahneman & Klein — American Psychologist, 64(6), 515-526
A skeptic of intuition (heuristics-and-biases) and a champion of it (naturalistic decision making) agree that intuitive judgments can be trusted only when the environment is regular enough to be learnable and the person has had lots of practice with rapid, clear feedback.
FoundationalConceptual · 2007
Wood & Neal — Psychological Review, 114(4), 843-863
Habits are learned links between context cues and responses that form through repetition and can then be triggered directly by those cues without the goal that originally drove them. Goals shape habits mainly by motivating the early repetition and by steering people toward cues, rather than by directly activating the habit.
FoundationalLab experiment · 1997
Bechara et al. — Science, 275(5304), 1293-1295
Healthy participants began choosing advantageously and showed anticipatory skin-conductance responses to risky options before they could explain which strategy was best. Patients with prefrontal damage never developed these signals and kept choosing badly even after knowing the right strategy.
PB-01Strong evidence
Uses the reporting button or channel whenever a message feels wrong, whether or not they clicked.
PB-02Moderate evidence
Treats deadlines, threats, and 'act now' language as a signal to slow down, not speed up.
PB-03Moderate evidence
Confirms payment changes, credential requests, and odd asks by calling or messaging the person through a known, separate channel.
PB-04Moderate evidence
Stops when a message feels wrong, even before they can say exactly why.
PB-06Contested evidence
Checks before acting when a message invokes a boss, executive, government body, or IT department.
PB-07Emerging evidence
Stays helpful, but confirms who is asking before sharing files, codes, or access.
PB-08Contested evidence
Does not treat claims that coworkers already acted as a reason to act.
PB-12Emerging evidence
No longer relies on typos and bad grammar as the main warning sign.
OB-13Strong evidence
Invests in filtering and warnings first, and treats trained people as the layer that catches what gets through.
Behavior