Research Article

A Gamified Web-based Approach to Improving Phishing and Social Engineering Attack Recognition Skills

by  Deepak Galinki, Suhair Amer, Ridam Kaphle
journal cover
International Journal of Computer Applications
Foundation of Computer Science (FCS), NY, USA
Volume 187 - Issue 132
Published: August 2026
Authors: Deepak Galinki, Suhair Amer, Ridam Kaphle
10.5120/ijca69b0236efc73
PDF

Deepak Galinki, Suhair Amer, Ridam Kaphle . A Gamified Web-based Approach to Improving Phishing and Social Engineering Attack Recognition Skills. International Journal of Computer Applications. 187, 132 (August 2026), 25-32. DOI=10.5120/ijca69b0236efc73

                        @article{ 10.5120/ijca69b0236efc73,
                        author  = { Deepak Galinki,Suhair Amer,Ridam Kaphle },
                        title   = { A Gamified Web-based Approach to Improving Phishing and Social Engineering Attack Recognition Skills },
                        journal = { International Journal of Computer Applications },
                        year    = { 2026 },
                        volume  = { 187 },
                        number  = { 132 },
                        pages   = { 25-32 },
                        doi     = { 10.5120/ijca69b0236efc73 },
                        publisher = { Foundation of Computer Science (FCS), NY, USA }
                        }
                        %0 Journal Article
                        %D 2026
                        %A Deepak Galinki
                        %A Suhair Amer
                        %A Ridam Kaphle
                        %T A Gamified Web-based Approach to Improving Phishing and Social Engineering Attack Recognition Skills%T 
                        %J International Journal of Computer Applications
                        %V 187
                        %N 132
                        %P 25-32
                        %R 10.5120/ijca69b0236efc73
                        %I Foundation of Computer Science (FCS), NY, USA
Abstract

This paper presents an interactive web-based educational application designed to teach users to identify and recognize social engineering attacks, phishing emails, and scam tactics. The system provides interactive lessons, quizzes, and scenario-based challenges that help users develop critical cybersecurity awareness skills. Through gamified learning experiences, users learn to spot red flags in emails, recognize common scam patterns, and understand the psychological tactics used by attackers. The application aims to significantly improve user awareness and ability to defend against social engineering threats.

References
  • R. Salama, F. Al-Turjman, S. Bhatla and S. P. Yadav, "Social engineering attack types and prevention techniques- A survey," 2023 International Conference on Computational Intelligence, Communication Technology and Networking (CICTN), Ghaziabad, India, 2023, pp. 817-820, doi: 10.1109/CICTN57981.2023.10140957.
  • A. Suleimanov, M. Abramov and A. Tulupyev, "Modelling of the social engineering attacks based on social graph of employees communications analysis," 2018 IEEE Industrial Cyber-Physical Systems (ICPS), St. Petersburg, Russia, 2018, pp. 801-805, doi: 10.1109/ICPHYS.2018.8390809.
  • S. Gupta, A. Singhal and A. Kapoor, "A literature survey on social engineering attacks: Phishing attack," 2016 International Conference on Computing, Communication and Automation (ICCCA), Greater Noida, India, 2016, pp. 537-540, doi: 10.1109/CCAA.2016.7813778.
  • A. Bishnoi, Garv, S. Bishnoi and N. Gupta, "Comprehensive Assessment of Reverse Social Engineering to Understand Social Engineering Attacks," 2023 5th International Conference on Smart Systems and Inventive Technology (ICSSIT), Tirunelveli, India, 2023, pp. 681-685, doi: 10.1109/ICSSIT55814.2023.10061054.
  • A. O. Khlobystova and A. L. Tulupyev, "Approaches to Modeling Development Scenarios of Multistep Social Engineering Attacks," 2021 IV International Conference on Control in Technical Systems (CTS), Saint Petersburg, Russian Federation, 2021, pp. 100-102, doi: 10.1109/CTS53513.2021.9562746.
  • N. Lungu, L. Barik, A. A. AlRababah, S. Rout, J. R. Saini and S. S. Patra, "Computational Social Engineering Attacks Mitigation in Social Media Platforms," 2025 5th International Conference on Mobile Networks and Wireless Communications (ICMNWC), Tumkur, India, 2025, pp. 1-5, doi: 10.1109/ICMNWC66779.2025.11354345.
  • R. O. Oveh and G. O. Aziken, "Mitigating Social Engineering Attack: A Focus on the Weak Human Link," 2022 5th Information Technology for Education and Development (ITED), Abuja, Nigeria, 2022, pp. 1-4, doi: 10.1109/ITED56637.2022.10051202.
  • T. T. Longtchi, R. M. Rodriguez, L. Al-Shawaf, A. Atyabi and S. Xu, "Internet-Based Social Engineering Psychology, Attacks, and Defenses: A Survey," in Proceedings of the IEEE, vol. 112, no. 3, pp. 210-246, March 2024, doi: 10.1109/JPROC.2024.3379855
  • A. V. Kulkarni and S. Nath, "Human Susceptibility to Social Engineering Attacks: an innovative approach to social change," 2024 IEEE International Conference on Interdisciplinary Approaches in Technology and Management for Social Innovation (IATMSI), Gwalior, India, 2024, pp. 1-6, doi: 10.1109/IATMSI60426.2024.10502492.
  • Y. Kano and T. Nakajima, "Trust Factors of Social Engineering Attacks on Social Networking Services," 2021 IEEE 3rd Global Conference on Life Sciences and Technologies (LifeTech), Nara, Japan, 2021, pp. 25-28, doi: 10.1109/LifeTech52111.2021.9391929.
  • F. Mouton, A. Nottingham, L. Leenen and H. S. Venter, "Finite State Machine for the Social Engineering Attack Detection Model: SEADM," in SAIEE Africa Research Journal, vol. 109, no. 2, pp. 133-148, June 2018, doi: 10.23919/SAIEE.2018.8531953.
  • T. Li, K. Wang and J. Horkoff, "Towards Effective Assessment for Social Engineering Attacks," 2019 IEEE 27th International Requirements Engineering Conference (RE), Jeju, Korea (South), 2019, pp. 392-397, doi: 10.1109/RE.2019.00051.
  • Y. Alahmed, R. Abadla and M. J. A. Ansari, "Exploring the Potential Implications of AI-generated Content in Social Engineering Attacks," 2024 International Conference on Multimedia Computing, Networking and Applications (MCNA), Valencia, Spain, 2024, pp. 64-73, doi: 10.1109/MCNA63144.2024.10703950.
  • M. R. Arabia-Obedoza, G. Rodriguez, A. Johnston, F. Salahdine and N. Kaabouch, "Social Engineering Attacks A Reconnaissance Synthesis Analysis," 2020 11th IEEE Annual Ubiquitous Computing, Electronics & Mobile Communication Conference (UEMCON), New York, NY, USA, 2020, pp. 0843-0848, doi: 10.1109/UEMCON51285.2020.9298100.
  • W. Syafitri, Z. Shukur, U. A. Mokhtar, R. Sulaiman and M. A. Ibrahim, "Social Engineering Attacks Prevention: A Systematic Literature Review," in IEEE Access, vol. 10, pp. 39325-39343, 2022, doi: 10.1109/ACCESS.2022.3162594.
Index Terms
Computer Science
Information Sciences
No index terms available.
Keywords

Cybersecurity awareness social engineering phishing detection scam identification interactive learning web-based application gamified education cybersecurity training

Powered by PhDFocusTM