使用解析树验证的网站钓鱼检测

C. Shyni, A. D. Sundar, G. S. E. Ebby
{"title":"使用解析树验证的网站钓鱼检测","authors":"C. Shyni, A. D. Sundar, G. S. E. Ebby","doi":"10.1109/RAETCS.2018.8443961","DOIUrl":null,"url":null,"abstract":"Phishing is a technique of tricking people into giving sensitive information like usernames and passwords, credit card details, sensitive bank information, etc., by way of email spoofing, instant messaging, or using fake web sites whose look and feel gives the appearance of a legitimate website. In this work, a technique named parse tree validation is proposed to determine whether a webpage is legitimate or phishing. It is a novel approach to detect the phishing web sites by intercepting all the hyperlinks of a current page through Google API, and constructing a parse tree with the intercepted hyperlinks. This technique is implemented and tested with 1000 phishing pages and 1000 legitimate pages. The false negative rate achieved was 7.3% and the false positive rate achieved was 5.2%.","PeriodicalId":131311,"journal":{"name":"2018 Recent Advances on Engineering, Technology and Computational Sciences (RAETCS)","volume":"213 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2018-02-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"12","resultStr":"{\"title\":\"Phishing Detection in Websites using Parse Tree Validation\",\"authors\":\"C. Shyni, A. D. Sundar, G. S. E. Ebby\",\"doi\":\"10.1109/RAETCS.2018.8443961\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"Phishing is a technique of tricking people into giving sensitive information like usernames and passwords, credit card details, sensitive bank information, etc., by way of email spoofing, instant messaging, or using fake web sites whose look and feel gives the appearance of a legitimate website. In this work, a technique named parse tree validation is proposed to determine whether a webpage is legitimate or phishing. It is a novel approach to detect the phishing web sites by intercepting all the hyperlinks of a current page through Google API, and constructing a parse tree with the intercepted hyperlinks. This technique is implemented and tested with 1000 phishing pages and 1000 legitimate pages. The false negative rate achieved was 7.3% and the false positive rate achieved was 5.2%.\",\"PeriodicalId\":131311,\"journal\":{\"name\":\"2018 Recent Advances on Engineering, Technology and Computational Sciences (RAETCS)\",\"volume\":\"213 1\",\"pages\":\"0\"},\"PeriodicalIF\":0.0000,\"publicationDate\":\"2018-02-01\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"\",\"citationCount\":\"12\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"2018 Recent Advances on Engineering, Technology and Computational Sciences (RAETCS)\",\"FirstCategoryId\":\"1085\",\"ListUrlMain\":\"https://doi.org/10.1109/RAETCS.2018.8443961\",\"RegionNum\":0,\"RegionCategory\":null,\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"\",\"PubModel\":\"\",\"JCR\":\"\",\"JCRName\":\"\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"2018 Recent Advances on Engineering, Technology and Computational Sciences (RAETCS)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/RAETCS.2018.8443961","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 12

摘要

网络钓鱼是一种欺骗人们提供敏感信息的技术,如用户名和密码,信用卡详细信息,敏感的银行信息等,通过电子邮件欺骗,即时消息,或使用假网站,其外观和感觉给一个合法网站的外观。在这项工作中,提出了一种名为解析树验证的技术来确定网页是合法的还是网络钓鱼的。通过Google API截获当前页面的所有超链接,并利用截获的超链接构建解析树,是一种检测钓鱼网站的新方法。该技术在1000个网络钓鱼页面和1000个合法页面上实现和测试。假阴性率为7.3%,假阳性率为5.2%。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
Phishing Detection in Websites using Parse Tree Validation
Phishing is a technique of tricking people into giving sensitive information like usernames and passwords, credit card details, sensitive bank information, etc., by way of email spoofing, instant messaging, or using fake web sites whose look and feel gives the appearance of a legitimate website. In this work, a technique named parse tree validation is proposed to determine whether a webpage is legitimate or phishing. It is a novel approach to detect the phishing web sites by intercepting all the hyperlinks of a current page through Google API, and constructing a parse tree with the intercepted hyperlinks. This technique is implemented and tested with 1000 phishing pages and 1000 legitimate pages. The false negative rate achieved was 7.3% and the false positive rate achieved was 5.2%.
求助全文
通过发布文献求助,成功后即可免费获取论文全文。 去求助
来源期刊
自引率
0.00%
发文量
0
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
确定
请完成安全验证×
copy
已复制链接
快去分享给好友吧!
我知道了
右上角分享
点击右上角分享
0
联系我们:info@booksci.cn Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。 Copyright © 2023 布克学术 All rights reserved.
京ICP备2023020795号-1
ghs 京公网安备 11010802042870号
Book学术文献互助
Book学术文献互助群
群 号:481959085
Book学术官方微信