Title :
Protection AgainstWeb-based Password Phishing
Author :
Tan, Chik How ; Teo, Joseph Chee Ming
Author_Institution :
Dept. of Comput. Sci. & Media Technol., Gjovik Univ. Coll.
Abstract :
The increase in the number of phishing attacks goes to show that the current secure socket layer (SSL) is insufficient to protect users against fraudulent Web sites. In this paper, we discuss some of the current phishing attacks and the limitations/weaknesses of the current SSL protocol. Next, we propose an ID-based SSL protocol to overcome the limitations/weaknesses of current SSL and offer better protection for users against phishing attacks. We show in the security analysis how our protocol prevents phishing attacks that are difficult to detect, even for experienced and well-educated users
Keywords :
Internet; protocols; security of data; ID-based secure socket layer protocol; Web sites; World Wide Web; password phishing; security analysis; Authentication; Computer science; Cryptographic protocols; Educational institutions; Open systems; Protection; Public key; Security; Sockets; Web server;
Conference_Titel :
Information Technology, 2007. ITNG '07. Fourth International Conference on
Conference_Location :
Las Vegas, NV
Print_ISBN :
0-7695-2776-0
DOI :
10.1109/ITNG.2007.162