首页> 外文会议>International Conference on Electronic Design >Wide scope and fast websites phishing detection using URLs lexical features
【24h】

Wide scope and fast websites phishing detection using URLs lexical features

机译:使用URL词汇功能进行范围广泛且快速的网站网络钓鱼检测

获取原文

摘要

Phishing is a considerable problem differs from the other security threats such as intrusions and Malware which are based on the technical security holes of the network systems. The weakness point of any network system is its Users. Phishing attacks are targeting these users depending on the trikes of social engineering. Despite there are several ways to carry out these attacks, unfortunately the current phishing detection techniques cover some attack vectors like email and fake websites. Therefore, building a specific limited scope detection system will not provide complete protection from the wide phishing attack vectors. This paper develops detection system with a wide protection scope using URL features only which is relying on the fact that users directly deal with URLs to surf the internet and provides a good approach to detect malicious URLs as proved by previous studies. Additionally, Anti-phishing solutions can be positioned at different levels of attack flow where most researchers are focusing on client side solutions which turn to add more processing overhead at the client side and lead to losing the trust and satisfaction of the users. Nowadays many organizations make centralized protection of spam filtering. This paper proposes a system which can be integrated into such process in order to increase the detection performance in a real time. The simulation results of the proposed system showed a phishing URLs detection accuracy with 93% and provided online process of a single URL in average time of 0.12 second.
机译:网络钓鱼是一个重大问题,与其他安全威胁(例如基于网络系统的技术安全漏洞的入侵和恶意软件)不同。任何网络系统的弱点是它的用户。网络钓鱼攻击针对这些用户,这取决于社会工程学的三叉戟。尽管有几种方法可以进行这些攻击,但是不幸的是,当前的网络钓鱼检测技术涵盖了某些攻击媒介,例如电子邮件和假冒网站。因此,构建特定的有限范围检测系统将无法针对广泛的网络钓鱼攻击媒介提供全面的保护。本文开发了一种仅使用URL功能就具有广泛保护范围的检测系统,该系统依赖于用户直接处理URL来上网的事实,并提供了一种很好的方法来检测恶意URL,如先前的研究所证明的那样。此外,反网络钓鱼解决方案可以定位在不同级别的攻击流程中,大多数研究人员将重点放在客户端解决方案上,这些客户端解决方案会在客户端增加更多的处理开销,并导致失去用户的信任和满意度。如今,许多组织对垃圾邮件过滤进行集中保护。本文提出了一种可以集成到这样的过程中以实时提高检测性能的系统。所提出系统的仿真结果表明,仿冒URL的检测精度为93%,并提供了平均时间为0.12秒的单个URL的在线处理。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号