• DocumentCode
    1952807
  • Title

    A layout-similarity-based approach for detecting phishing pages

  • Author

    Rosiello, Angelo P.E. ; Kirda, Engin ; Kruegel, Christopher ; Ferrandi, Fabrizio

  • Author_Institution
    Politecnico di Milano, Italy
  • fYear
    2007
  • fDate
    17-21 Sept. 2007
  • Firstpage
    454
  • Lastpage
    463
  • Abstract
    Phishing is a current social engineering attack that results in online identity theft. In a phishing attack, the attacker persuades the victim to reveal confidential information by using web site spoofing techniques. Typically, the captured information is then used to make an illegal economic profit by purchasing goods or undertaking online banking transactions. Although simple in nature, because of their effectiveness, phishing attacks still remain a great source of concern for organizations with online customer services. In previous work, we have developed AntiPhish, a phishing protection system that prevents sensitive user information from being entered on phishing sites. The drawback is that this system requires cooperation from the user and occasionally raises false alarms. In this paper, we present an extension of our system (called DOMAntiPhish) that mitigates the shortcomings of our previous system. In particular, our novel approach leverages layout similarity information to distinguish between malicious and benign web pages. This makes it possible to reduce the involvement of the user and significantly reduces the false alarm rate. Our experimental evaluation demonstrates that our solution is feasible in practice.
  • Keywords
    Banking; Computer crime; Costs; Customer service; Electronic mail; Large-scale systems; Protection; Uniform resource locators; Web and internet services; Web pages;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Security and Privacy in Communications Networks and the Workshops, 2007. SecureComm 2007. Third International Conference on
  • Conference_Location
    Nice, France
  • Print_ISBN
    978-1-4244-0974-7
  • Electronic_ISBN
    978-1-4244-0975-4
  • Type

    conf

  • DOI
    10.1109/SECCOM.2007.4550367
  • Filename
    4550367