A graph-theoretic approach for the detection of phishing webpages

被引:30
|
作者
Tan, Choon Lin [1 ]
Chiew, Kang Leng [1 ]
Yong, Kelvin S. C. [2 ]
Sze, San Nah [1 ]
Abdullah, Johari [1 ]
Sebastian, Yakub [3 ]
机构
[1] Univ Malaysia Sarawak, Fac Comp Sci & Informat Technol, Kota Samarahan 94300, Sarawak, Malaysia
[2] Swinburne Univ Technol, Fac Engn Comp & Sci, Sarawak Campus,Jalan Simpang Tiga, Sarawak 93350, Malaysia
[3] Charles Darwin Univ, Coll Engn IT & Environm, Ellengowan Dr, Casuarina, NT 0810, Australia
关键词
Phishing detection; Hyperlinks; Web graph; Graph features; Machine learning; FEATURE-SELECTION; WEBSITES;
D O I
10.1016/j.cose.2020.101793
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Over the years, various technical means have been developed to protect Internet users from phishing attacks. To enrich the anti-phishing efforts, we capitalise on concepts from graph theories, and propose a set of novel graph features to improve the phishing detection accuracy. The initial phase of the proposed technique involved the extraction of hyperlinks in the webpage under scrutiny and fetching the corresponding neighbourhood webpages. During this process, the page linking data were collected, and used to construct a web graph which models the overall hyperlink and network structure of the webpage. From the web graph, graph measures were computed and extracted as graph features to derive a classifier for detecting phishing webpages. Experimental results show that the proposed graph features achieve an improved overall accuracy of 97.8% when C4.5 was utilised as classifier, outperforming the existing conventional features derived from the same data samples. Unlike conventional features, the proposed graph features leverage inherent phishing patterns that are only visible at a higher level of abstraction, thus making it robust and difficult to be evaded by direct manipulations on the webpage contents. Our proposed graph-based technique also shows promising results when benchmarked against a prominent phishing detection technique. Hence, the proposed technique is an important contribution to the existing anti-phishing research towards improving the detection performance. (C) 2020 Elsevier Ltd. All rights reserved.
引用
收藏
页数:14
相关论文
共 50 条
  • [41] A semi-supervised learning approach for detection of phishing webpages
    Li, Yuancheng
    Xiao, Rui
    Feng, Jingang
    Zhao, Liujun
    [J]. OPTIK, 2013, 124 (23): : 6027 - 6033
  • [42] Graph-theoretic scagnostics
    Wilkinson, L
    Anand, A
    Grossman, R
    [J]. INFOVIS 05: IEEE SYMPOSIUM ON INFORMATION VISUALIZATION, PROCEEDINGS, 2005, : 157 - 164
  • [43] Situation Management in Aviation Security - A Graph-Theoretic Approach
    Koelle, Rainer
    Kolev, Denis
    [J]. PROCEEDINGS OF THE 8TH INTERNATIONAL CONFERENCE ON INFORMATION WARFARE AND SECURITY (ICIW-2013), 2013, : 125 - 135
  • [44] A GRAPH-THEORETIC APPROACH TO PREDICTING MOLECULAR-PROPERTIES
    BASAK, SC
    NIEMI, GJ
    VEITH, GD
    [J]. MATHEMATICAL AND COMPUTER MODELLING, 1990, 14 : 511 - 516
  • [45] GRAPH-THEORETIC APPROACH TO NONPARAMETRIC CLUSTER-ANALYSIS
    KOONTZ, WLG
    NARENDRA, PM
    FUKUNAGA, K
    [J]. IEEE TRANSACTIONS ON COMPUTERS, 1976, 25 (09) : 936 - 944
  • [46] A graph-theoretic visualization approach to network risk analysis
    O'Hare, Scott
    Noel, Steven
    Prole, Kenneth
    [J]. VISUALIZATION FOR COMPUTER SECURITY, PROCEEDINGS, 2008, 5210 : 60 - +
  • [47] A GRAPH-THEORETIC APPROACH TO EXPERT-SYSTEM TESTING
    HURA, GS
    SRIKANTHAN, T
    [J]. ENGINEERING APPLICATIONS OF ARTIFICIAL INTELLIGENCE, 1995, 8 (05) : 539 - 547
  • [48] Graph-theoretic approach to structure-property correlations
    Vinogradova, MC
    Papulov, YG
    Smolyakov, VM
    Saltykova, MN
    [J]. ZHURNAL FIZICHESKOI KHIMII, 1996, 70 (04): : 675 - 680
  • [49] A GRAPH-THEORETIC APPROACH TO PROCESS PLANT-DESIGN
    WILLIAMS, MC
    FUERSTENAU, DW
    MELOY, TP
    [J]. INTERNATIONAL JOURNAL OF MINERAL PROCESSING, 1992, 36 (1-2) : 1 - 8
  • [50] STRUCTURAL AND QUALITATIVE PROPERTIES OF SYSTEMS - A GRAPH-THEORETIC APPROACH
    YAMADA, T
    [J]. JOURNAL OF THE OPERATIONS RESEARCH SOCIETY OF JAPAN, 1986, 29 (04) : 376 - 399