Articles producció científicaEnginyeria Informàtica i Matemàtiques

Phishing vulnerability and personality traits: Insights from a systematic review

  • Identification data

    Identifier:  imarina:9465613
    Authors:  Lopez-Aguilar, Pablo; Urruela, Carlota; Batista, Edgar; Machin, Juvenal; Solanas, Agusti
    Abstract:
    Phishing attacks have gained prominence and effectiveness over the years. Although many efforts are devoted to combat them, generic anti-phishing awareness and training campaigns have shown limited success. In this context, considering individuals' personality traits in relation to phishing behaviour could significantly enhance cybersecurity defence strategies. In this article, we concentrate on personality traits and their effects on vulnerability to phishing attacks. We implement a rigorous systematic review following the methodology proposed by vom Brocke et al. (2009) along with the PRISMA statement. We searched five major databases (i.e., Web of Science, Scopus, IEEE Xplore, ACM Digital Library, and PubMed), with an all-years' time span from 1900 to January 2025. From the 1919 articles yielded in the initial search, 26 satisfied all criteria. Results reveal that extraversion, agreeableness, and neuroticism generally show a positive association with phishing vulnerability, whereas conscientiousness emerges as a protective factor. The review also highlights significant gaps in the current methodologies used to measure phishing vulnerability, noting a lack of standardised measurement tools to perform phishing experiments. Finally, this study underscores the need to develop secondary prevention strategies targeting at-risk groups to combat the increasingly sophisticated phishing threats. To enhance consistency in future research, the Appendix includes guidelines for measuring phishing vulnerability under experimental conditions.
  • Others:

    Author, as appears in the article.: Lopez-Aguilar, Pablo; Urruela, Carlota; Batista, Edgar; Machin, Juvenal; Solanas, Agusti
    Department: Enginyeria Informàtica i Matemàtiques
    URV's Author/s: Solanas Gómez, Agustín
    Keywords: Big five personality traits; Big-5 factors; Cybercrime prevention; Decision-making; Facets; Inventory; Model; Phishing experiments; Phishing vulnerability; Risk; Self-control; Susceptibility; Systematic review; Validity; Version
    Abstract: Phishing attacks have gained prominence and effectiveness over the years. Although many efforts are devoted to combat them, generic anti-phishing awareness and training campaigns have shown limited success. In this context, considering individuals' personality traits in relation to phishing behaviour could significantly enhance cybersecurity defence strategies. In this article, we concentrate on personality traits and their effects on vulnerability to phishing attacks. We implement a rigorous systematic review following the methodology proposed by vom Brocke et al. (2009) along with the PRISMA statement. We searched five major databases (i.e., Web of Science, Scopus, IEEE Xplore, ACM Digital Library, and PubMed), with an all-years' time span from 1900 to January 2025. From the 1919 articles yielded in the initial search, 26 satisfied all criteria. Results reveal that extraversion, agreeableness, and neuroticism generally show a positive association with phishing vulnerability, whereas conscientiousness emerges as a protective factor. The review also highlights significant gaps in the current methodologies used to measure phishing vulnerability, noting a lack of standardised measurement tools to perform phishing experiments. Finally, this study underscores the need to develop secondary prevention strategies targeting at-risk groups to combat the increasingly sophisticated phishing threats. To enhance consistency in future research, the Appendix includes guidelines for measuring phishing vulnerability under experimental conditions.
    Thematic Areas: Applied psychology; Artificial intelligence; Ciencias sociales; Cognitive neuroscience; Computer science applications; Human-computer interaction; Neuroscience (miscellaneous); Psychology, experimental; Psychology, multidisciplinary
    licence for use: https://creativecommons.org/licenses/by/3.0/es/
    Author's mail: agusti.solanas@urv.cat
    Record's date: 2025-09-27
    Paper version: info:eu-repo/semantics/publishedVersion
    Link to the original source: https://www.sciencedirect.com/science/article/pii/S245195882500199X?via%3Dihub
    Paper original source: Computers In Human Behavior Reports. 20 100784-
    APA: Lopez-Aguilar, Pablo; Urruela, Carlota; Batista, Edgar; Machin, Juvenal; Solanas, Agusti (2025). Phishing vulnerability and personality traits: Insights from a systematic review. Computers In Human Behavior Reports, 20(), 100784-. DOI: 10.1016/j.chbr.2025.100784
    Licence document URL: https://repositori.urv.cat/ca/proteccio-de-dades/
    Article's DOI: 10.1016/j.chbr.2025.100784
    Entity: Universitat Rovira i Virgili
    Journal publication year: 2025
    Publication Type: Journal Publications
  • Keywords:

    Applied Psychology,Artificial Intelligence,Cognitive Neuroscience,Computer Science Applications,Human-Computer Interaction,Neuroscience (Miscellaneous),Psychology, Experimental,Psychology, Multidisciplinary
    Big five personality traits
    Big-5 factors
    Cybercrime prevention
    Decision-making
    Facets
    Inventory
    Model
    Phishing experiments
    Phishing vulnerability
    Risk
    Self-control
    Susceptibility
    Systematic review
    Validity
    Version
    Applied psychology
    Artificial intelligence
    Ciencias sociales
    Cognitive neuroscience
    Computer science applications
    Human-computer interaction
    Neuroscience (miscellaneous)
    Psychology, experimental
    Psychology, multidisciplinary
  • Documents:

  • Cerca a google

    Search to google scholar