کد مقاله کد نشریه سال انتشار مقاله انگلیسی نسخه تمام متن
552369 1451056 2016 10 صفحه PDF دانلود رایگان
عنوان انگلیسی مقاله ISI
PhishWHO: Phishing webpage detection via identity keywords extraction and target domain name finder
ترجمه فارسی عنوان
PhishWHO: تشخیص صفحه وب فیشینگ از طریق استخراج کلمات کلیدی هویت و نام دامنه یاب هدف
کلمات کلیدی
تشخیص فیشینگ؛ کلمات کلیدی هویت؛ N گرم؛ نشانه URL وزن؛ موتور جستجو
موضوعات مرتبط
مهندسی و علوم پایه مهندسی کامپیوتر سیستم های اطلاعاتی
چکیده انگلیسی


• Exploit URL patterns based on the proposed N-gram model to extract identity keywords
• Attain robustness in detecting phishing webpages hosted in any language
• Offers long-term effectiveness by leveraging on permanent phishing characteristic
• Achieve higher accuracy in finding target identity by using compromise programming
• Suppress false positives by exploiting indirect identity relationships

This paper proposes a phishing detection technique based on the difference between the target and actual identities of a webpage. The proposed phishing detection approach, called PhishWHO, can be divided into three phases. The first phase extracts identity keywords from the textual contents of the website, where a novel weighted URL tokens system based on the N-gram model is proposed. The second phase finds the target domain name by using a search engine, and the target domain name is selected based on identity-relevant features. In the final phase, a 3-tier identity matching system is proposed to determine the legitimacy of the query webpage. The overall experimental results suggest that the proposed system outperforms the conventional phishing detection methods considered.

ناشر
Database: Elsevier - ScienceDirect (ساینس دایرکت)
Journal: Decision Support Systems - Volume 88, August 2016, Pages 18–27
نویسندگان
, , , ,