Homoglyph Attack Detection Model Using Machine Learning and Hash Function

被引:3
|
作者
Almuhaideb, Abdullah M. [1 ]
Aslam, Nida [2 ]
Alabdullatif, Almaha [2 ]
Altamimi, Sarah [2 ]
Alothman, Shooq [2 ]
Alhussain, Amnah [2 ]
Aldosari, Waad [2 ]
Alsunaidi, Shikah J. [2 ]
Alissa, Khalid A. [1 ]
机构
[1] Imam Abdulrahman Bin Faisal Univ, Coll Comp Sci & Informat Technol, Dept Networks & Commun, SAUDI ARAMCO Cybersecur Chair, POB 1982, Dammam 31441, Saudi Arabia
[2] Imam Abdulrahman Bin Faisal Univ, Coll Comp Sci & Informat Technol, Dept Comp Sci, POB 1982, Dammam 31441, Saudi Arabia
关键词
phishing detection; machine learning; forged websites; hash function; classification; PHISHING DETECTION; FEATURE-SELECTION;
D O I
10.3390/jsan11030054
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Phishing is still a major security threat in cyberspace. In phishing, attackers steal critical information from victims by presenting a spoofing/fake site that appears to be a visual clone of a legitimate site. Several Unicode characters are visually identical to ASCII characters. This similarity in characters is generally known as homoglyphs. Malicious adversaries utilize homoglyphs in URLs and DNS domains to target organizations. To reduce the risks caused by phishing attacks, effective ways of detecting phishing websites are urgently required. This paper proposes a homoglyph attack detection model that combines a hash function and machine learning. There are two phases to the model approach. The machine was being trained during the development phase. The deployment phase involved deploying the model with a Java interface and testing the outcomes through actual user interaction. The results are more accurate when the URL is hashed, as any little changes to the URL can be recognized. The homoglyph detector can be developed as a stand-alone software that is used as the initial step in requesting a webpage as it enhances browser security and protects websites from phishing attempts. To verify the effectiveness, we compared the proposed model on several criteria to existing phishing detection methods. By using the hash function, the proposed security features increase the overall security of the homoglyph attack detection in terms of accuracy, integrity, and availability. The experiment results showed that the model can detect phishing sites with an accuracy of 99.8% using Random Forest, and the hash function improves the accuracy of homoglyph attack detection.
引用
收藏
页数:18
相关论文
共 50 条
  • [1] Cybersecurity Attack Detection Model, Using Machine Learning Techniques
    Avci, Isa
    Koca, Murat
    [J]. ACTA POLYTECHNICA HUNGARICA, 2023, 20 (07) : 29 - 44
  • [2] Homoglyph Attack Detection with Unpaired Data
    Lu, Yiwei
    Kumar, Mahesh K.
    Mohammed, Noman
    Wang, Yang
    [J]. SEC'19: PROCEEDINGS OF THE 4TH ACM/IEEE SYMPOSIUM ON EDGE COMPUTING, 2019, : 377 - 382
  • [3] A Lightweight Model for DDoS Attack Detection Using Machine Learning Techniques
    Sadhwani, Sapna
    Manibalan, Baranidharan
    Muthalagu, Raja
    Pawar, Pranav
    [J]. APPLIED SCIENCES-BASEL, 2023, 13 (17):
  • [4] Attack Detection in IoT using Machine Learning
    Anwer, Maryam
    Khan, Shariq Mahmood
    Farooq, Muhammad Umer
    Waseemullah
    [J]. ENGINEERING TECHNOLOGY & APPLIED SCIENCE RESEARCH, 2021, 11 (03) : 7273 - 7278
  • [5] Phishing attack detection using Machine Learning
    Pandiyan S S.
    Selvaraj P.
    Burugari V.K.
    Benadit P J.
    P K.
    [J]. Measurement: Sensors, 2022, 24
  • [6] Model Evasion Attack on Intrusion Detection Systems using Adversarial Machine Learning
    Ayub, Md Ahsan
    Johnson, William A.
    Talbert, Douglas A.
    Siraj, Ambareen
    [J]. 2020 54TH ANNUAL CONFERENCE ON INFORMATION SCIENCES AND SYSTEMS (CISS), 2020, : 324 - 329
  • [7] Detection of Signaling System 7 Attack in Network Function Virtualization using Machine Learning
    Qasim, Tooba
    Durad, M. Hanif
    Khan, Asifullah
    Nazir, Farhan
    Qasim, Tehreem
    [J]. PROCEEDINGS OF 2018 15TH INTERNATIONAL BHURBAN CONFERENCE ON APPLIED SCIENCES AND TECHNOLOGY (IBCAST), 2018, : 484 - 488
  • [8] Detection of DDoS Attack in IoT Using Machine Learning
    Kumar, Naveen
    Aleem, Abdul
    Kumar, Sachin
    [J]. ADVANCED NETWORK TECHNOLOGIES AND INTELLIGENT COMPUTING, ANTIC 2021, 2022, 1534 : 190 - 199
  • [9] Cloud Insider Attack Detection Using Machine Learning
    Nathezhtha, T.
    Vaidehi, V.
    [J]. PROCEEDINGS OF THE 2018 INTERNATIONAL CONFERENCE ON RECENT TRENDS IN ADVANCED COMPUTING (ICRTAC-CPS 2018), 2018, : 60 - 65
  • [10] Botnet Attack Detection in IoT Using Machine Learning
    Alissa, Khalid
    Alyas, Tahir
    Zafar, Kashif
    Abbas, Qaiser
    Tabassum, Nadia
    Sakib, Shadman
    [J]. COMPUTATIONAL INTELLIGENCE AND NEUROSCIENCE, 2022, 2022