Skip to main content

ETHNOS_APP

Home • Search • Journals • List 0

Hacking Humans? Social Engineering and the Construction of the "Deficient User" in Cybersecurity Discourses

Bibliographic Data

ID5337367
AuthorsNina Klimburg-Witjes (0000-0003-0583-8788, University of Vienna, corresponding author), Alexander Wentland (0000-0003-3080-8599, Technical University of Munich)
Year2021
Volume46
Issue6
Pages1316-1339
Publication date2021-11-01
Peer ReviewedYes
Open AccessYes
TypeARTICLE
VenueScience Technology & Human Values (JOURNAL)
Journal identifiersISSN: 0162-2439 • E-ISSN: 1552-8251
PublisherSAGE Publications Inc (PUBLISHER)
DOI10.1177/0162243921992844
OpenAlexW3133399946
LanguageEN
Citations received8
References cited45

Today, social engineering techniques are the most common way of committing cybercrimes through the intrusion and infection of computer systems. Cybersecurity experts use the term "social engineering" to highlight the "human factor" in digitized systems, as social engineering attacks aim at manipulating people to reveal sensitive information. In this paper, we explore how discursive framings of individual versus collective security by cybersecurity experts redefine roles and responsibilities at the digitalized workplace. We will first show how the rhetorical figure of the deficient user is constructed vis-à-vis notions of (in)security in social engineering discourses. Second, we will investigate the normative tensions that these practices create. To do so, we link work in science and technology studies on the politics of deficit construction to recent work in critical security studies on securitization and resilience. Empirically, our analysis builds on a multi-sited conference ethnography during three cybersecurity conferences as well as an extensive document analysis. Our findings suggest a redistribution of institutional responsibility to the individual user through three distinct social engineering story lines-"the oblivious employee," "speaking code and social," and "fixing human flaws." Finally, we propose to open up the discourse on social engineering and its inscribed politics of deficit construction and securitization and advocate for companies and policy makers to establish and foster a culture of collective cyber in/security and corporate responsibility

Business · Computer security · Critical security studies · Cyberwarfare · Hacker · Information security · Malware · Network security policy · Political science · Politics · Public relations · Rhetorical question · Securitization · Security service · Social media · Sociology · Computer Science · COVID-19 Digital Contact Tracing · Cybersecurity and Cyber Warfare Studies · Global Security and Public Health · Law

  • Diabolus in Machina? Complex Digital Systems Interpreted through Early Modern Demonology

    Open Access•Gerhard Wiesenfeldt, J Sinanan•Journal of Religion Media and…•2024

  • Anticipatory Governance in Biobanking

    Open Access•Dagmar Vorlíček, Dagmar Rychnovská•Science and Engineering Ethics•2021

  • Engaging with cybercriminals

    Open Access•Michail Georgiou, Ellen Giebels et al.•Computers in Human Behavior•2026

  • From Criminal to Crucial Participation

    Open Access•Anne Marte Gardenier•Social Inclusion•2025

  • The fabrication of a necessary policy fiction

    Paul Trauttmansdorff•Critical Policy Studies•2022

  • Collateral transitions. Reassembling societies, data centres and the twin transition

    Open Access•Carsten Horn, U Felt•Environmental Science & Policy•2025

  • When the future meets the past

    Open Access•Ola Michalec, Sveta Milyaeva et al.•Big Data & Society•2022

  • The Security-Innovation Nexus in (Geo-)Political Imagination

    Open Access•Christian Haddad, Dagmar Vorlíček et al.•Geopolitics•2024

  • Vulnerability in Technological Cultures

    Anique Hommels, Jessica Mesman et al.•Vulnerability in Technological…•2014

  • Resilience

    David Chandler•Resilience•2014

  • The Closed World

    Paul N Edwards•The Closed World•1996

  • Challenging the “deficit model” of innovation

    Open Access•Sebastian Pfotenhauer, Sebastian M Pfotenhauer et al.•Research Policy•2019

  • Public Engagement as a Means of Restoring Public Trust in Science – Hitting the Notes, but Missing the Music?

    Open Access•Brian Wynne•Public Health Genomics•2006

  • Critical Security Studies and World Politics

    Hayward Alker, Graeme Cheeseman et al.•Critical Security Studies and…•2005

  • Research to improve public understanding programmes

    Open Access•Walter F Bodmer, Walter Bodmer et al.•Public Understanding of Science•1992

  • From deficit to democracy (re-visited)

    Open Access•Alec Irwin•Public Understanding of Science•2014

  • Risk and the War on Terror

    Claudia Aradau, Rens Van Munster et al.•Risk and the war on terror•2008

  • Ethnographies of Conferences and Trade Fairs

    Open Access•Hege Høyer Leivestad, Anette Nyqvist•Ethnographies of Conferences and…•2017

  • Authoritative Governance

    Maarten A Hajer•Authoritative governance•2009

  • Cybersecurity Research Meets Science and Technology Studies

    Open Access•Myriam Dunn Cavelty•Politics and Governance•2018

  • Cyber Security Assemblages

    Open Access•Jamie Collier•Politics and Governance•2018

  • Enacting Expertise

    Open Access•James Shires•Politics and Governance•2018

  • A theory of actor-network for cyber-security

    Open Access•Thierry Balzacq, Myriam Dunn Cavelty•European Journal of International…•2016

  • Securing Virtual Space

    Open Access•David Barnard-Wills, David Barnard‐will et al.•Space and Culture•2012

  • Exercising emergencies

    Open Access•Mareile Kaufmann•Security Dialogue•2015

  • What’s in an act? On security speech acts and little security nothings

    Open Access•J Huysmans•Security Dialogue•2011

  • Genealogies of resilience

    Open Access•Jeremy Walker, M Cooper•Security Dialogue•2011

  • Critical Approaches to Security in Europe

    Open Access•C A S E Collective•Security Dialogue•2006

  • Resilience and (in)security

    Open Access•Myriam Dunn Cavelty, Mareile Kaufmann et al.•Security Dialogue•2015

  • From ‘fearing’ to ‘empowering’ climate refugees

    Open Access•Chris Methmann, Angela Oels•Security Dialogue•2015

  • Technosecurity Cultures

    Jutta Weber, Jeffrey S Weber et al.•Science as Culture•2020

  • An overview of social engineering malware

    Open Access•Sherly Abraham, InduShobha Chengalur-Smith et al.•Technology in Society•2010

  • Machineries for Making Publics

    Open Access•U Felt, Maximilian Fochler•Minerva•2010

  • Studying Global Environmental Meetings to Understand Global Environmental Governance

    Open Access•Lisa M Campbell, Catherine Corson et al.•Global Environmental Politics•2014

  • Cybersecurity, Bureaucratic Vitalism and European Emergency

    Open Access•Stephanie Simon, Marieke De Goede•Theory Culture & Society•2015

  • An introduction to science and technology studies

    Sergio Sismondo•An introduction to science and…•2010

  • Digital Disaster, Cyber Security, and the Copenhagen School

    Open Access•Lene Hansen, Helen Nissenbaum•International Studies Quarterly•2009

  • The Three Faces of Securitization

    Open Access•Thierry Balzacq•European Journal of International…•2005

  • Securitization and the Construction of Security

    Open Access•Matt Mcdonald•European Journal of International…•2008

  • The (in)securitization practices of the three universes of EU border control

    Open Access•D Bigo•Security Dialogue•2014

  • Misunderstood misunderstanding

    Open Access•Brian Wynne•Public Understanding of Science•1992

  • Opening Up" and "Closing Down

    Open Access•Andy Stirling•Science Technology & Human Values•2008

  • Securitization' revisited

    Open Access•Thierry Balzacq, Sarah Léonard et al.•International Relations•2016

  • Governing insecurity

    Filippa Lentzos, Nikolas Rose•Economy and Society•2009

Unique citing works8
Citations per year1,6
Citation span2021 - 2026 (6)
Citation velocitycurrent
Highly citedNo
Citation typesNeutral: 7

Tools

Open DOIOpen Access
Ethnos_APP • Open Source Project • MIT License • Frontend v2.0.0 • Privacy and Cookies • API Documentation: api.ethnos.app/docs • API Source Code: GitHub • DOI: 10.5281/zenodo.17049435 • Frontend Source Code: GitHub • DOI: 10.5281/zenodo.17050053 • cruz.rio.br • Expectantes Misericordiae