CrawlPhish: Large-Scale Analysis of Client-Side Cloaking Techniques in Phishing

被引:11
|
作者
Zhang, Penghui [1 ,2 ]
Oest, Adam [3 ]
Cho, Haehyun [4 ]
Sun, Zhibo [1 ]
Johnson, R. C. [3 ]
Wardman, Brad [5 ]
Sarker, Shaown [6 ]
Kapravelos, Alexandros [6 ]
Bao, Tiffany [1 ]
Wang, Ruoyu [1 ]
Shoshitaishvili, Yan [1 ]
Doupe, Adam [7 ]
Ahn, Gail-Joon [8 ]
机构
[1] Arizona State Univ, Tempe, AZ 85287 USA
[2] Meta Platforms Inc, Menlo Pk, CA 94025 USA
[3] Pay Pal Inc, Scottsdale, AZ USA
[4] Soongsil Univ, Cyber Security Res Ctr, Sch Software, Seoul 06978, South Korea
[5] Pay Pal Inc, Informat Secur, Scottsdale, AZ 85258 USA
[6] North Carolina State Univ, Raleigh, NC 27695 USA
[7] Arizona State Univ, Sch Comp & Augmented Intelligence, Tempe, AZ 85281 USA
[8] Arizona State Univ, Future Comp Lab, Ira A Fulton Sch Engn, Tempe, AZ 85281 USA
基金
新加坡国家研究基金会; 美国国家科学基金会;
关键词
D O I
10.1109/MSEC.2021.3129992
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Phishing websites with advanced evasion techniques are a critical threat to Internet users because they delay detection by current antiphishing systems. We present CrawlPhish, a framework for automatically detecting and categorizing the client-side (e.g., JavaScript) evasion used by phishing websites.
引用
收藏
页码:10 / 21
页数:12
相关论文
共 50 条
  • [31] rfaRm: An R client-side interface to facilitate the analysis of the Rfam database of RNA families
    Selles Vidal, Lara
    Ayala, Rafael
    Stan, Guy-Bart
    Ledesma-Amaro, Rodrigo
    PLOS ONE, 2021, 16 (01):
  • [32] LARGE-SCALE INTEGRATION TECHNIQUES FOR TELECOMMUNICATION
    CORNU, J
    ELECTRICAL COMMUNICATION, 1980, 55 (04): : 376 - 381
  • [34] High availability services of client in large-scale cluster system
    College of Information and Communication, National University of Defense Technology, Xi’an, Shaanxi
    710106, China
    J. Phys. Conf. Ser., 1742, 1
  • [35] Modeling large-scale live video streaming client behavior
    Guarnieri, Thiago
    Drago, Idilio
    Cunha, Italo
    Almeida, Breno
    Almeida, Jussara M.
    Vieira, Alex B.
    MULTIMEDIA SYSTEMS, 2021, 27 (06) : 1101 - 1124
  • [36] Modeling large-scale live video streaming client behavior
    Thiago Guarnieri
    Idilio Drago
    Ítalo Cunha
    Breno Almeida
    Jussara M. Almeida
    Alex B. Vieira
    Multimedia Systems, 2021, 27 : 1101 - 1124
  • [37] Phishing in Organizations: Findings from a Large-Scale and Long-Term Study
    Lain, Daniele
    Kostiainen, Kari
    Capkun, Srdjan
    43RD IEEE SYMPOSIUM ON SECURITY AND PRIVACY (SP 2022), 2022, : 842 - 859
  • [38] DETECTING SERVER-SIDE ENDPOINTS IN WEB APPLICATIONS BASED ON STATIC ANALYSIS OF CLIENT-SIDE Java']JavaScript CODE
    Sigalov, D. A.
    Khashaev, A. A.
    Gamayunov, D. Yu.
    PRIKLADNAYA DISKRETNAYA MATEMATIKA, 2021, (53): : 32 - 54
  • [39] The anatomy of deception: Measuring technical and human factors of a large-scale phishing campaign
    Chrysanthou, Anargyros
    Pantis, Yorgos
    Patsakis, Constantinos
    COMPUTERS & SECURITY, 2024, 140
  • [40] Doppelgangers on the Dark Web: A Large-scale Assessment on Phishing Hidden Web Services
    Yoon, Changhoon
    Kim, Kwanwoo
    Kim, Yongdae
    Shin, Seungwon
    Son, Sooel
    WEB CONFERENCE 2019: PROCEEDINGS OF THE WORLD WIDE WEB CONFERENCE (WWW 2019), 2019, : 2225 - 2235