...
首页> 外文期刊>Journal of Computation & Modeling >Cognitive Web Application Firewall to Critical Infrastructures Protection from Phishing Attacks
【24h】

Cognitive Web Application Firewall to Critical Infrastructures Protection from Phishing Attacks

机译:认知Web应用程序防火墙可保护关键基础架构免受网络钓鱼攻击

获取原文
           

摘要

Phishing scams and attacks attempt to trick people into providing sensitive personal information such as account login credentials, credit card numbers, banking details and other identifying data. This is done for malicious reasons, by disguising as a trustworthy entity in an electronic communication. It is an example of social engineering techniques used to deceive users and to exploit weaknesses in current web security. It is very popular with cybercriminals, as it is far easier to trick someone into clicking a malicious link in a seemingly legitimate URL than trying to break through a computer’s defenses. Nowadays, phishing scammers continually target many critical infrastructures and major financial institutions, companies, government departments, and online service providers around the world. For those infrastructures specifically, skilled phishers use advanced techniques to target both vigilant and naive employees, with destructive often zero-day attacks, including ransomware, malware, bots, spam, spoofing and pharming. This paper proposes an innovative, ultra-fast and low requirements’?Intelligence Web Application Firewall (?WAF) for Critical Infrastructure?Protection (CIP). It discusses the design and development of an intelligent tool?which employs an evolving Izhikevich spiking neurons’ approach, for the?automated identification of phishing web sites. Additionally, it builds Group?Policy Objects (GPO) under Windows Domain for automated prevention of?phishing attacks. The reasoning of its core is based on advanced computational?intelligence approaches.
机译:网络钓鱼诈骗和攻击试图诱骗人们提供敏感的个人信息,例如帐户登录凭据,信用卡号,银行详细信息和其他标识数据。出于恶意原因,通过伪装成电子通信中的可信赖实体来完成此操作。它是用于欺骗用户和利用当前Web安全漏洞的社交工程技术的一个示例。它在网络罪犯中非常流行,因为诱使某人单击看似合法的URL中的恶意链接比尝试突破计算机的防御要容易得多。如今,网络钓鱼诈骗者一直以全球许多重要的基础设施以及主要的金融机构,公司,政府部门和在线服务提供商为目标。特别是对于那些基础架构,熟练的网络钓鱼者使用先进的技术来针对警惕和天真的员工,同时具有破坏性的零日攻击,包括勒索软件,恶意软件,僵尸程序,垃圾邮件,欺骗和欺骗。本文提出了一种创新的,超快速且低要求的“关键网络基础设施保护(CIP)智能Web应用防火墙(WAF)”。它讨论了智能工具的设计和开发,该工具采用了不断发展的Izhikevich尖峰神经元方法来自动识别网络钓鱼网站。此外,它在Windows域下构建组策略对象(GPO),以自动防止网络钓鱼攻击。其核心的推理是基于高级计算智能方法。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号