Cyber Threat Risks in Higher Education Institutions: an Example of the Estonian Academy of Security Sciences
Kate‐Riin Kont · Baltic Journal of Modern Computing · 2025
Purpose of this study is to identify the most common characteristics that make users vulnerable, either individually or in groups, and to determine whether there is a relationship between user behaviour and victimisation of a cyber-attack.This research should help characterise people who are more likely to become victims of various phishing and social attacks.For this purpose, students, employees and lecturers of the Estonian Academy of Security Sciences were investigated.A five-scale questionnaire was used as the methodology of the study, which takes into account the following behaviour scales: risky behaviour, conservative behaviour, risk exposure behaviour and risk perception behaviour.Survey scales already used in previous studies were applied to the students, academics and administrative staff of the Estonian Academy of Security Sciences (hereinafter Academy).These scales and questions are quite well suited for identifying cyber risks that are threatening the patrons of higher education institutions.The results of the study show there are significant differences within the samples and according to Internet usage habits and positions in the Academy.