DocumentCode
2345055
Title
Protection AgainstWeb-based Password Phishing
Author
Tan, Chik How ; Teo, Joseph Chee Ming
Author_Institution
Dept. of Comput. Sci. & Media Technol., Gjovik Univ. Coll.
fYear
2007
fDate
2-4 April 2007
Firstpage
754
Lastpage
759
Abstract
The increase in the number of phishing attacks goes to show that the current secure socket layer (SSL) is insufficient to protect users against fraudulent Web sites. In this paper, we discuss some of the current phishing attacks and the limitations/weaknesses of the current SSL protocol. Next, we propose an ID-based SSL protocol to overcome the limitations/weaknesses of current SSL and offer better protection for users against phishing attacks. We show in the security analysis how our protocol prevents phishing attacks that are difficult to detect, even for experienced and well-educated users
Keywords
Internet; protocols; security of data; ID-based secure socket layer protocol; Web sites; World Wide Web; password phishing; security analysis; Authentication; Computer science; Cryptographic protocols; Educational institutions; Open systems; Protection; Public key; Security; Sockets; Web server;
fLanguage
English
Publisher
ieee
Conference_Titel
Information Technology, 2007. ITNG '07. Fourth International Conference on
Conference_Location
Las Vegas, NV
Print_ISBN
0-7695-2776-0
Type
conf
DOI
10.1109/ITNG.2007.162
Filename
4151772
Link To Document