Title Naudotojo apsauga nuo duomenų viliojimo atakų
Translation of Title Users’ protection against phishing attacks.
Authors Tumšys, Andrius
Full Text Download
Pages 67
Abstract [eng] This master’s thesis examines the problem of phishing attacks and their prevention methods, focusing on enduser education and resilient user interface design guidelines. The research ana lyzed 12 existing security tools, revealing that the majority rely solely on technical protection measures, lacking explanatory design and educational components — the combination of which is identified in the literature as most effective for building longterm user resilience. To address this gap, a hybrid approach was developed, combining proactive protection with contextual educational elements. Consequently, 33 design guidelines were formulated along with application recom mendations, encompassing technical detection, explainable design, and behavioral psychology elements, organized by target audience and tool type. Using these guidelines, a Chrome browser extension was developed. The extension analyzes web pages in realtime and communicates identified threats using visual indicators, popup messages, and a side panel with detailed educational explanations. The extension was tested with participants of varying IT expertise levels using a threephase testing model. The results demonstrated that the tool significantly increased threat detection accuracy and reduced decision making time, with the greatest benefit observed among participants with less IT experience. Furthermore, the testing confirmed that justintime education ensures knowledge retention, as participants maintained a high accuracy rate even without the extension’s assistance. The findings confirm the effectiveness of a hybrid approach combining proactive blocking with contextual educational warnings in cybersecurity.
Dissertation Institution Vilniaus universitetas.
Type Master thesis
Language Lithuanian
Publication date 2026