首页> 外文期刊>Decision support systems >An efficacious method for detecting phishing webpages through target domain identification
【24h】

An efficacious method for detecting phishing webpages through target domain identification

机译:通过目标域识别检测网络钓鱼网页的有效方法

获取原文
获取原文并翻译 | 示例
       

摘要

Phishing is a fraudulent act to acquire sensitive information from unsuspecting users by masking as a trustworthy entity in an electronic commerce. Several mechanisms such as spoofed e-mails, DNS spoofing and chat rooms which contain links to phishing websites are used to trick the victims. Though there are many existing anti-phishing solutions, phishers continue to lure the victims. In this paper, we present a novel approach that not only overcomes many of the difficulties in detecting phishing websites but also identifies the phishing target that is being mimicked. We have proposed an anti-phishing technique that groups the domains from hyperlinks having direct or indirect association with the given suspicious webpage. The domains gathered from the directly associated webpages are compared with the domains gathered from the indirectly associated webpages to arrive at a target domain set. On applying Target Identification (TID) algorithm on this set, we zero-in the target domain. We then perform third-party DNS lookup of the suspicious domain and the target domain and on comparison we identify the legitimacy of the suspicious page.
机译:网络钓鱼是一种欺诈行为,它通过掩饰为电子商务中的可信赖实体来从毫无戒心的用户那里获取敏感信息。诸如欺骗性电子邮件,DNS欺骗和聊天室等几种机制(其中包含指向钓鱼网站的链接)被用来欺骗受害者。尽管存在许多现有的反网络钓鱼解决方案,但网络钓鱼者仍在诱骗受害者。在本文中,我们提出了一种新颖的方法,该方法不仅克服了检测网络钓鱼网站的许多困难,而且还确定了被模仿的网络钓鱼目标。我们已经提出了一种防网络钓鱼技术,该技术可以根据与给定可疑网页具有直接或间接关联的超链接对域进行分组。将从直接关联的网页收集的域与从间接关联的网页收集的域进行比较,以得出目标域集。在此集合上应用目标识别(TID)算法后,我们将目标域归零。然后,我们对可疑域和目标域执行第三方DNS查找,并通过比较来确定可疑页面的合法性。

著录项

  • 来源
    《Decision support systems》 |2014年第5期|12-22|共11页
  • 作者单位

    Computer Science and Engineering, Amrita School of Engineering, Amrita Vishwa Vidyapeetham, Coimbatore, Tamilnadu, India;

    Computer Science and Engineering, Sri Krishna College of Engineering and Technology, Kuniamuthur, Coimbatore, Tamilnadu, India;

    Computer Science and Engineering, Amrita School of Engineering, Amrita Vishwa Vidyapeetham, Coimbatore, Tamilnadu, India;

  • 收录信息 美国《科学引文索引》(SCI);美国《工程索引》(EI);
  • 原文格式 PDF
  • 正文语种 eng
  • 中图分类
  • 关键词

    Phishing; Anti-phishing; E-commerce security; Target domain detection;

    机译:网络钓鱼;反网络钓鱼;电子商务安全;目标域检测;

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号