{"title":"The PhishBouncer Experience","authors":"P. Pal, M. Atighetchi","doi":"10.1109/CATCH.2009.12","DOIUrl":null,"url":null,"abstract":"This extended abstract summarizes the technical results developed under the PhishBouncer project (October 2005 to May 2007), where the authors collaborated with researchers from Symantec Research Lab (SRL). The goal of this project was to develop middleware-based technology to defend unsuspecting users against Phishing attacks. More specifically, the project explored mechanisms to intercept and inspect HTTP and HTTPS traffic to detect and block interaction with Phish sites, and mechanisms for quickly disseminating the Phishing URL. A part of the work started in this project has continued at SRL under separate funding, that aspect of the work is kept out scope of this paper. The project started out by conceiving a total anti-Phishing solution package, but made technical advances in a number of its separate aspects, such as smart proxy insertion and rapid update dissemination, which transcend the specific problem space.","PeriodicalId":130933,"journal":{"name":"2009 Cybersecurity Applications & Technology Conference for Homeland Security","volume":"37 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2009-03-03","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"5","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"2009 Cybersecurity Applications & Technology Conference for Homeland Security","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/CATCH.2009.12","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 5
Abstract
This extended abstract summarizes the technical results developed under the PhishBouncer project (October 2005 to May 2007), where the authors collaborated with researchers from Symantec Research Lab (SRL). The goal of this project was to develop middleware-based technology to defend unsuspecting users against Phishing attacks. More specifically, the project explored mechanisms to intercept and inspect HTTP and HTTPS traffic to detect and block interaction with Phish sites, and mechanisms for quickly disseminating the Phishing URL. A part of the work started in this project has continued at SRL under separate funding, that aspect of the work is kept out scope of this paper. The project started out by conceiving a total anti-Phishing solution package, but made technical advances in a number of its separate aspects, such as smart proxy insertion and rapid update dissemination, which transcend the specific problem space.