【24h】

SPS: A Simple Filtering Algorithm to Thwart Phishing Attacks

机译:SPS:一种用于阻止网络钓鱼攻击的简单过滤算法

获取原文
获取原文并翻译 | 示例

摘要

In this paper, we explain that by only applying a simple filtering algorithm into various proxy systems, almost all phishing attacks can be blocked without loss of convenience to the user. We propose a system based on a simple filtering algorithm which we call the Sanitizing Proxy System (SPS). The key idea of SPS is that Web phishing attack can be immunized by removing part of the content that traps novice users into entering their personal information. Also, since SPS sanitizes all HTTP responses from suspicious URLs with warning messages, novice users will realize that they are browsing phishing sites. The SPS filtering algorithm is very simple and can be described in roughly 20 steps, and can also be built in any proxy system, such as a server solution, a personal firewall or a browser plug-in. By using SPS with a transparent proxy server, novice users will be protected from almost all Web phishing attacks even if novice users misbehave. With a deployment model, robustness and evaluation, we discuss the feasibility of SPS in today's network operations.
机译:在本文中,我们解释说,仅将简单的过滤算法应用于各种代理系统中,几乎所有网络钓鱼攻击都可以被阻止,而不会给用户带来便利。我们提出了一种基于简单过滤算法的系统,我们称之为消毒代理系统(SPS)。 SPS的关键思想是,可以通过删除诱使新手用户输入其个人信息的部分内容来免疫网络钓鱼攻击。此外,由于SPS会使用警告消息清除可疑URL中的所有HTTP响应,因此新手用户将意识到他们正在浏览网络钓鱼站点。 SPS过滤算法非常简单,大约可以用20个步骤描述,也可以内置在任何代理系统中,例如服务器解决方案,个人防火墙或浏览器插件。通过将SPS与透明代理服务器一起使用,即使新手用户的行为不当,也可以保护新手用户免受几乎所有的网络钓鱼攻击。通过部署模型,健壮性和评估,我们讨论了SPS在当今网络运营中的可行性。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号