I Surveyed 300 Students About Phishing.
Introduction
I Surveyed 300 Students About Phishing. The Results Revealed a Cybersecurity Problem We Are Ignoring.
Photo by Adi Goldstein on Unsplash
Introduction
A single click is often all it takes.
Every day, students receive messages claiming they have won a prize, need to verify an account, or must urgently respond to a notification. Most seem harmless. Some are not.
As someone interested in cybersecurity and national security technology, I wanted to understand a simple question:
How prepared are students to recognize and respond to phishing attacks?
To investigate, I designed and distributed a survey that collected responses from 300 students. The survey was shared through Instagram Stories using a Google Forms link and remained open for several days. Participants responded anonymously, allowing for more honest answers regarding their online habits.
While I expected some cybersecurity gaps, the results revealed something more concerning: many students understand that cyber threats exist, yet continue to engage in behaviors that make them vulnerable to them.
Why This Research Matters
Phishing remains one of the most common cyberattack methods used worldwide. Unlike sophisticated hacking techniques, phishing often succeeds because it targets human psychology rather than computer systems.
Students are increasingly connected through social media, messaging platforms, gaming communities, and online learning environments. Despite this, cybersecurity education is rarely a formal part of their curriculum.
Understanding students’ awareness levels is important because today’s students will become tomorrow’s workforce, researchers, engineers, and policymakers.
Research Methodology
To conduct this study, I created a survey focused on five key areas:
- Password security habits
- Recognition of suspicious links
- Previous exposure to scams
- Two-factor authentication usage
- General cybersecurity awareness
The survey was distributed through Instagram Stories and reached students from multiple schools and age groups.
A total of 300 responses were collected and analyzed.
Although the sample was not nationally representative, it provides valuable insight into the cybersecurity behaviors of digitally active students.
Key Findings
Finding 1: Awareness Does Not Always Lead to Safe Behavior
Many respondents stated that they were familiar with phishing attacks.
However, when asked about their online habits, a substantial number admitted to clicking unfamiliar links or responding to suspicious messages at least once.
This suggests a gap between theoretical awareness and practical decision-making.
Knowing about cyber threats does not necessarily prevent risky behavior.
Finding 2: Password Security Remains Weak
Many participants reported reusing passwords across multiple platforms.
From a cybersecurity perspective, password reuse creates a chain reaction risk. A single compromised account can potentially expose numerous others.
The practice remains widespread despite years of public awareness campaigns.
Finding 3: Two-Factor Authentication Is Significantly Underutilized
One of the most surprising findings was the low adoption of two-factor authentication.
Security experts consistently identify two-factor authentication as one of the simplest and most effective methods for reducing account compromise.
Yet many students had not enabled it on their most frequently used platforms.
Finding 4: Scam Exposure Is Common
A significant portion of respondents reported receiving suspicious messages related to:
- Social media accounts
- Gaming platforms
- Giveaways and rewards
- Account verification requests
The frequency of these encounters demonstrates that phishing attempts are not rare events but routine experiences for many students.
Analysis
The data suggests that the primary cybersecurity challenge among students is not a complete lack of awareness.
Instead, it is a lack of consistent security practices.
Many students recognize obvious scams yet continue to reuse passwords, ignore account security settings, or make decisions based on convenience rather than security.
Cybersecurity is therefore as much a behavioral challenge as a technical one.
This observation aligns with a broader trend in cybersecurity: attackers often exploit human habits more successfully than technological vulnerabilities.
Limitations of the Study
Several limitations should be acknowledged.
The survey relied on self-reported responses, meaning participants may have unintentionally overestimated or underestimated their cybersecurity practices.
Additionally, participants were recruited through Instagram, which may not fully represent all student populations.
Future studies could expand participation across different regions, schools, and socioeconomic groups.
Recommendations
Based on the findings, several actions could improve student cybersecurity awareness:
Integrate Cybersecurity Into School Education
Basic cybersecurity concepts should be introduced alongside digital literacy programs.
Promote Two-Factor Authentication
Students should be encouraged to enable additional security measures on important accounts.
Conduct Practical Simulations
Interactive demonstrations of phishing attempts may be more effective than traditional lectures.
Encourage Better Password Practices
Students should learn how to create and manage strong, unique passwords.
Conclusion
This project began as a simple survey, but it highlighted a larger issue.
Students today spend thousands of hours online, yet many lack the practical cybersecurity habits needed to navigate digital environments safely.
As cyber threats continue to evolve, cybersecurity education must evolve alongside them.
Technology alone cannot solve the problem.
Awareness, education, and responsible online behavior remain our strongest defenses.
The results of this survey suggest that improving cybersecurity among students does not require advanced technology. It begins with understanding how students behave online and helping them develop safer habits before vulnerabilities become consequences.
Welcome to submit your original works and impactful stories. We publish original articles that offer clear lessons, drawing on real-world experiences, relevant examples, and practical takeaways for readers.
메타데이터
- post_id
- 629155ba1fd4
- slug
- i-surveyed-300-students-about-phishing-629155ba1fd4
- url
- https://medium.com/kurious-mind/i-surveyed-300-students-about-phishing-629155ba1fd4
- canonical_url
- https://medium.com/kurious-mind/i-surveyed-300-students-about-phishing-629155ba1fd4
- author_url
- https://medium.com/@ThinkSys2
- status
- ok
- fetched_at
- 2026-06-17 18:03:35