| | SLO | ENG | Cookies and privacy

Bigger font | Smaller font

Show document Help

Title:Spletno ribarjenje v državni upravi : magistrsko delo
Authors:ID Šteharnik, Ferdinand (Author)
ID Bernik, Igor (Mentor) More about this mentor... New window
Files:.pdf MAG_Steharnik_Ferdinand_2023.pdf (1,74 MB)
MD5: C09AF47A5BE5CA42615E3CC310AED9D7
 
Language:Slovenian
Work type:Master's thesis/paper
Typology:2.09 - Master's Thesis
Organization:FVV - Faculty of Criminal Justice and Security
Abstract:Osrednja tema tega zaključnega dela je porast phishing napadov v državni upravi. Uvodoma smo opredelili problem naraščanja tovrstnih kibernetskih groženj na nacionalni ravni ter na ravni državne uprave Republike Slovenije. Omenjeni problem je bil osnova za postavitev ciljev in tez tega zaključnega dela. V zaključnem delu smo opisali koncept delovanja phishing napadov ter do sedaj znane kategorije tovrstnih zlonamernih dejanj. Na podlagi proučevanja literature in lastnega znanja smo povzeli ukrepe, s katerimi se je vsaj delno mogoče zaščititi pred spletnim ribarjenjem. Opisali smo trenutno veljavni način beleženja kibernetskih incidentov v organih državne uprave ter drugih zavezancih, ki so formalno dolžni priglasiti tovrstne dogodke nadzornemu organu. Predstavili smo razpoložljive podatke o številu zabeleženih phishing incidentov na nacionalni in na ravni državne uprave. V empiričnem delu zaključnega dela smo s pomočjo anonimne ankete izvedli raziskavo o problematiki phishinga. Raziskavo smo izvedli na uporabnikih Finančne uprave Republike Slovenije; rezultate raziskave smo posplošili na zaposlene v državni upravi. Ugotavljali smo vpliv starosti, spola in stopnje dosežene izobrazbe na phishing problematiko. Preverili smo, ali trenutni sistem internega obveščanja dosega želeni cilj pri uporabnikih. Zanimalo nas je, ali so izobraževanja s področja kibernetske varnosti zadostna in ustrezna ter ali imata na željo po izobraževanju vpliv spol in starost uporabnikov. Izobraževanje je ključnega pomena pri preprečevanju navedenih kriminalnih ravnanj, kajti le ustrezno usposobljena oseba ima možnost zlonamerno vsebino prepoznati in nanjo ustrezno odreagirati.
Keywords:spletno ribarjenje, phishing, FURS, kibernetska varnost, magistrska dela
Place of publishing:Ljubljana
Place of performance:Ljubljana
Publisher:F. Šteharnik
Year of publishing:2023
Year of performance:2023
Number of pages:X f., [93] str.
PID:20.500.12556/DKUM-86351 New window
UDC:004.056:347.193(043.2)
COBISS.SI-ID:176470531 New window
Publication date in DKUM:07.12.2023
Views:774
Downloads:138
Metadata:XML DC-XML DC-RDF
Categories:FVV
:
Copy citation
  
Average score:(0 votes)
Your score:Voting is allowed only for logged in users.
Share:Bookmark and Share



Hover the mouse pointer over a document title to show the abstract or click on the title to get all document metadata.

Licences

License:CC BY-NC-ND 4.0, Creative Commons Attribution-NonCommercial-NoDerivatives 4.0 International
Link:http://creativecommons.org/licenses/by-nc-nd/4.0/
Description:The most restrictive Creative Commons license. This only allows people to download and share the work for no commercial gain and for no other purposes.
Licensing start date:15.11.2023

Secondary language

Language:English
Title:Phishing in state administration
Abstract:The basic topic of this master's thesis is the increase in phishing attacks in the state administration. Initially, we defined the problem of the rising cyber threats of this kind at the national level and within the state administration of the Republic of Slovenia. This issue represents the basis for setting the goals and theses of this final work. In our master's thesis, we described the concept of how phishing attacks operate, as well as the known categories of such malicious activities. Based on a study of the literature and our knowledge, we summarized measures that can at least partially protect against phishing attacks. We described the current valid method of recording cyber incidents in the bodies of state administration and other obligated entities formally required to report such events to the supervisory authority. We presented available data on the number of recorded phishing incidents at the national and state administration levels. In the empirical part of the thesis, we conducted a survey on the issue of phishing using an anonymous questionnaire. The survey was conducted on users of the Financial Administration of the Republic of Slovenia, and the results were generalized to employees in the state administration. We determined the influence of age, gender, and education on phishing issues. We found out whether the current internal notification system achieves the expected goal for users. We were interested in whether the training of users regarding information security is adequate and sufficient and whether gender and age affect the users' desire for additional education. Education is crucial in preventing the mentioned criminal activities because only a properly trained person can recognize malicious content and respond appropriately.
Keywords:phishing, Financial Administration of the Republic of Slovenia, cyber security


Comments

Leave comment

You must log in to leave a comment.

Comments (0)
0 - 0 / 0
 
There are no comments!

Back
Logos of partners University of Maribor University of Ljubljana University of Primorska University of Nova Gorica